Patch fix some security issues in vtiger 5.0.4,which could be used by Cross-Site-Scripting (XSS).
July 28th, 2008 by Martin Henke
This patch fix some security issues in vtiger 5.0.4,which could be used by Cross-Site-Scripting (XSS).
XSS make possible scripts indirectly to the browser of the victim to send and thus damage code on the side of the client to implement.
Update your vtiger with new fixed files from archive. copy & paste the folders include,modules and themes in your vtiger directory.
Here you can download the patch:
vtiger CRM Security Patch for 5.0.4




Hello,
thank you for the patch, but I encountered the following issue, when using different pdf generator Version: crm-now-pdf-504a:
Fatal error: Call to undefined function getContactforPDF() in …../modules/Invoice/CreatePDF.php on line 106
When switching back, it works again..
Bye,
Tom