Week 25 in Review – 2009

Published: June 22nd, 2009 | Category: Security Tools, Security Vulnerabilities, Vendor News

Tools:

Vulns:

  • HTTP Server DoS
  • Cisco ISO HTTP Server Command Injection Vulnerability
    • From the description of the vulnerability, it doesn’t sound like command injection. It sounds like the web server doesn’t properly sanitize the logs when viewing them. If there was html or javascript code in the logs, it would render them.
    • Offical Cisco Advisory cisco-sa-20051201-http – cisco.com

Other News:

  • Digg
  • del.icio.us
  • Facebook
  • Google Bookmarks
  • Reddit
  • StumbleUpon
  • TailRank
  • Technorati
  • TwitThis

Tags: , , , ,

RSS feed | Trackback URI

Comments »

No comments yet.

Name (required)
E-mail (required - never shown publicly)
URI
Your Comment (smaller size | larger size)
You may use <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> in your comment.

Trackback responses to this post

Infosec Events. Copyright 2010. All Rights Reserved.
Home - Calendar - Communities - Training - Archives - Contact