Bugtraq mailing list archives
Advisory: TCP-Connection risk in DB4Web
From: Stefan.Bagdohn () guardeonic com
Date: Tue, 17 Sep 2002 14:44:17 +0200
Hi all. It's me again. The application server DB4Web is able to initiate TCP connections to arbitrary ports/IPs and can possibly misused as a portscanner. Please see the attached advisory for deatils and vendors statement. regards, Stefan
Attachment:
guardadv-02-2002-db4web-tcp-connect-bug.release.txt
Description:
Current thread:
- Advisory: TCP-Connection risk in DB4Web Stefan . Bagdohn (Sep 18)