Penetration Testing mailing list archives

Re: CVE Identifier Request


From: "51l3n73y3s" <51l3n7 () live in>
Date: Tue, 23 Feb 2010 02:13:20 +0530

Hi Rajat,

You are on the right track, maybe you should wait or better follow up. Normally they don't take more than a day to respond, weekends I guess are off for them.

Regards, Sandeep

--------------------------------------------------
From: "rajat swarup" <rajats () gmail com>
Sent: Saturday, February 20, 2010 1:43 AM
To: "pen-test" <pen-test () securityfocus com>
Subject: CVE Identifier Request

Hi,
Does any one know what is the procedure for requesting a candidate CVE
identifier?  I requested a candidate CVE identifier from the MITRE for
a 0-day vulnerability in one of non-CNA (Candidate Naming Authority)
open source products that is widely used.  I sent the request to
cve () mitre org but no one responded.  I've already reported the
vulnerability to the vendor too and the issue has been "assigned" to
the owner of the issue.

Thanks and regards,
Rajat.
www.rajatswarup.com

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.

http://www.iacertification.org
------------------------------------------------------------------------



------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
http://www.iacertification.org
------------------------------------------------------------------------


Current thread: