oss-sec mailing list archives
Re: CVE request: Multiple security vulnerabilities in ARSC Really Simple Chat
From: Josh Bressers <bressers () redhat com>
Date: Thu, 2 Jun 2011 16:13:34 -0400 (EDT)
----- Original Message -----
Could you assign CVE-identifiers for following security vulnerabilities? https://sourceforge.net/tracker/?func=detail&aid=3310673&group_id=32699&atid=406296 http://www.htbridge.ch/advisory/xss_in_a_really_simple_chat_arsc.html http://www.htbridge.ch/advisory/multiple_sql_injections_in_a_really_simple_chat_arsc.html ARSC seems to be a bit of a sinking boat. I still wonder why htbridge does not request CVE-identifiers at all.
This needs two IDs: CVE-2011-2180 ARSC XSS CVE-2011-2181 ARSC SQL injection Thanks. -- JB
Current thread:
- CVE request: Multiple security vulnerabilities in ARSC Really Simple Chat Henri Salo (Jun 02)
- Re: CVE request: Multiple security vulnerabilities in ARSC Really Simple Chat Josh Bressers (Jun 02)
- Re: CVE request: Multiple security vulnerabilities in ARSC Really Simple Chat Steven M. Christey (Jun 07)