Full Disclosure mailing list archives

Re: radware AppWall Web Application Firewall: Source code disclosure on management interface


From: "Shaked Vax" <ShakedV () Radware com>
Date: Thu, 2 Jul 2009 14:23:16 +0300

Radware team has completed analysis of the reported issue, concluding
that no AppWall customer using the product  according to Radware
deployment recommendations would be exposed to vulnerability as a result
of this issue. This is due to the facts that this issue exists only on
the management interface that is recommended to be connection to
internal LAN only, and that it does not allow performing any actions
that would influence machine functionality.
 Nevertheless, in order to enforce our commitment to deliver top
security solution to our customers, Radware will supply a fix for this
issue within its upcoming AppWall release.

Shaked Vax
AppWall Product Manager 
ShakedV () radware com 
 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: