Subscribe to Infosec Events
Infosec Events Feed Stay up to date with all of the latest security news by subscribing to our RSS Feed. Alternatively, you can have updates sent directly to your email address.

Week 25 in Review – 2009

Published: June 22nd, 2009 | Category: Security Tools, Security Vulnerabilities, Vendor News

Tools:

Vulns:

  • HTTP Server DoS
  • Cisco ISO HTTP Server Command Injection Vulnerability
    • From the description of the vulnerability, it doesn’t sound like command injection. It sounds like the web server doesn’t properly sanitize the logs when viewing them. If there was html or javascript code in the logs, it would render them.
    • Offical Cisco Advisory cisco-sa-20051201-http – cisco.com

Other News:

Tags: , , , ,

RSS feed | Trackback URI

Comments »

No comments yet.

Name (required)
E-mail (required - never shown publicly)
URI
Your Comment (smaller size | larger size)
You may use <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> in your comment.

Trackback responses to this post

© Godai Group 2012
Home - Calendar - Communities - Training - Archives - Contact