Re: ZoneEdit Account Hijack Vulnerability

From: securityfocusat_private
Date: Wed Nov 06 2002 - 07:35:57 PST

  • Next message: sockz loves you: "[Full-Disclosure] Security Industry Under Scrutiny: Part One"

    
     ('binary' encoding is not supported, stored as-is)
    In-Reply-To: <000701c284d5$ccf1e2e0$0300a8c0at_private>
    
    >
    >The webmasters of this site were informed of this vulnerability on 
    >05 November 2002.  To date, no useable information on protecting 
    >against this vulnerability has been received.
    >
    
    Matt and Paul were contacted on 05 November 2002 to notify them that a 
    security review had been completed, and to please re-run their tests. No 
    reply has yet been received.
    
    Erik Aronesty
    ZoneEdit CEO
    



    This archive was generated by hypermail 2b30 : Wed Nov 06 2002 - 22:18:04 PST