March 23, 2018
Holm Security’s security team is working hard to detect new vulnerabilities in widely used CMS systems. Many of our customers use Episerver, where we recently discovered a vulnerability. The websites affected range from government agencies to large companies.
Holm Security discovered a vulnerability in EPiServer’s SiteSeeker product. The vulnerability means that JavaScript in affected web pages can be modified to include malware from another seemingly trustworthy domain. EPiServer has been informed of the vulnerability and they have developed a hotfix for this vulnerability in EPiServer CMS version 11.0.1. EPiServer refers customers to “EPiServer internal ticket ID: ESEE-61”.
Some examples of affected web pages are:
Read more articles similar to this one.
Vulnerability Management
Security scanning, or vulnerability scanning, can mean many different things, but it can be simply described as scanning the security of...
Vulnerability Management
Vulnerability Management is a cornerstone in modern cyber security defense. But getting started and implementing a successful security strategy for...
Vulnerability Management
Thousands of new vulnerabilities are discovered annually, requiring organizations to patch software and reconfigure security settings. To proactively...