Security Advisories

You are here
Security Advisories

This page contains important information regarding security vulnerabilities that could affect specific versions of MyConnection Server. Use this information to make sure the the version of MCS you have is free from vulnerabilites.

Click here to download the latest MCS and click here to review the release notes.

Date Advisory Details Version Affected Version Rectified
August 1st, 2023 ZDI-CAN-21611 doRTAAccessUPass Exposed Dangerous Method Information Disclosure Vulnerability 11.3c 11.3d
August 1st, 2023 ZDI-CAN-21612 doPostUploadfiles Directory Traversal Remote Code Execution Vulnerability 11.3c 11.3d
August 1st, 2023 ZDI-CAN-21613 doRTAAccessCTConfig Cross-Site Scripting Authentication Bypass Vulnerability 11.3c 11.3d
August 1st, 2023 ZDI-CAN-21774 doIForward XML External Entity Processing Information Disclosure Vulnerability 11.3c 11.3d