Full Disclosure mailing list archives

Re: iDefense Q2 2006 Vulnerability Challenge


From: "Pavel Kankovsky" <peak () argo troja mff cuni cz>
Date: Sat, 20 May 2006 16:46:12 +0200 (CEST)

On Wed, 17 May 2006, labs-no-reply () idefense com wrote:

For the second quarter of 2006, we're shifting the focus from vendor to
technology. This time around, we're focusing on database
vulnerabilities. [...]

- The vulnerability must result in root access on the target machine

"Root access on the target machine"? Are you serious?
Isn't "DBA access on the target database engine" enough for you?

--Pavel Kankovsky aka Peak  [ Boycott Microsoft--http://www.vcnet.com/bms ]
"Resistance is futile. Open your source code and prepare for assimilation."

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: