Re: Hosting Controller Vulnerability

From: James Griffin (jamesat_private)
Date: Sun Jul 14 2002 - 02:33:09 PDT

  • Next message: Simon Hausmann: "Re: [VulnWatch] 5 bugs"

    
     ('binary' encoding is not supported, stored as-is)
    In-Reply-To: <20020713151412.10889.qmailat_private>
    
    Same security hole in Version 1.4
    
    I have tested this vulnerability in version 1.4 of hosting controller 
    and  changed the Administrator password in the same way as described.
    
    I applied the patch supplied and this successfully prevented reproduction 
    of the vulnerability.
    



    This archive was generated by hypermail 2b30 : Mon Jul 15 2002 - 10:06:30 PDT