Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: [Full-disclosure] Correcting CVEs (was Re: Cross site scripting issues in s9y (CVE-2008-1386, CVE-2008-1387)) |
|---|---|
| Date: | Tue, 22 Apr 2008 19:51:58 +0100 |
On Tue, Apr 22, 2008 at 1:21 PM, Hanno Böck <hanno@hboeck.de> wrote:
Am Dienstag 22 April 2008 schrieb Hanno Böck:Two smaller issues in s9y, published here: http://int21.de/cve/CVE-2008-1386-s9y.html http://int21.de/cve/CVE-2008-1387-s9y.htmlDamn, it was too early in the morning. The correct CVEs (as listed in the advisory below) are CVE-2008-1385 and CVE-2008-1386. The correct URLs: http://int21.de/cve/CVE-2008-1385-s9y.html http://int21.de/cve/CVE-2008-1386-s9y.html Sorry for any confusion this has caused. -- Hanno Böck Blog: http://www.hboeck.de/ GPG: 3DBD3B20 Jabber/Mail: hanno@hboeck.de _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Are you sick of being laughed at and not getting the respect you deserve for releasing XSS? Web Application Security Awareness Day, it brings the respect you deserve back!!! What does it mean to take part? You'll be part of a day when web application bugs are being released, you'll be part of a landmark day in infosec history, when we talk with one voice to send a message to the powers that be. White papers, research, bugs, tips, everything to do with Web Application Security will be released & discussed. This is your day to shine, its Web Application Security Awareness Day, a new and innovative day brought to you by n3td3v. Learn More http://n3td3v.googlepages.com/home http://lists.grok.org.uk/pipermail/full-disclosure/2008-April/061507.html Regards, n3td3v _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [Full-disclosure] Security issue in Filezilla3.0.9.2:passwordsare stored in plain text (sitemanager.xml), Garrett M. Groff |
|---|---|
| Next by Date: | Re: [Full-disclosure] Security issue inFilezilla3.0.9.2:passwordsare stored in plain text (sitemanager.xml), Joey Mengele |
| Previous by Thread: | [Full-disclosure] Correcting CVEs (was Re: Cross site scripting issues in s9y (CVE-2008-1386, CVE-2008-1387)), Hanno BÃck |
| Next by Thread: | Re: [Full-disclosure] Correcting CVEs (was Re: Cross site scripting issues in s9y (CVE-2008-1386, CVE-2008-1387)), Razi Shaban |
| Indexes: | [Date] [Thread] [Top] [All Lists] |