You are browsing the archive for Jobs.

Jobs Portal Multiple Vulnerabilities

June 15, 2012 in Files, SQLi, XSS

The Vulnerability Laboratory Research Team discovered multiple web vulnerabilities in Jobs Portal v3.0, a powerful jobs board software.

Jobs Portal is a web product for running powerful and customized job portals. The product may be used also to
empower existing websites with jobs portal functionality. Jobs Portal comes with a front site (fully customizable and template based), jobseekers administration space (with functionality for the users to edit their profile, consult the job offers, manage their resume etc.), employers administration space (allowing the employers to post job ads, manage their company profile, search the database with the jobseekers resumes and many others) and powerful back office for the administrators (providing full control over the website, structure and content management, detailed user management, search engines reports, statistics and many others).

Jobs Portal version 3.0 suffers from remote SQL injection and cross site scripting vulnerabilities.
View Source