Hello Community,
I've found an arbitrary code execution vulnerability in Register, Register_mod_XH and Register_XH.
Recommended solution: upgrade to Register_XH 1.4rc5.
Alternative solution, if upgrading is no option: change the setting of "captcha mode" to "image" or "none".
Christoph
Register Plugin: arbitrary code execution vulnerability
Register Plugin: arbitrary code execution vulnerability
Christoph M. Becker – Plugins for CMSimple_XH