Snort mailing list archives

Re: [Fwd: [Full-disclosure] XSS at snort.org]


From: Martin Roesch <roesch () sourcefire com>
Date: Mon, 14 Aug 2006 12:12:12 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Paul,

It's already fixed.

      -Marty


On Aug 14, 2006, at 12:04 PM, Paul Schmehl wrote:

FYI.  The "exploit" didn't work for me, but I wasn't very patient  
with it either.

-------- Original Message --------
Subject: [Full-disclosure] XSS at snort.org
Date: Mon, 14 Aug 2006 09:37:59 +0300
From: Valery Marchuk <tecklord () argocom cv ua>
To: <full-disclosure () lists grok org uk>

Not very cool for an IDS vendor :)



Example is in my blog at http://www.securitylab.ru/blog/tecklord/ 
181.php



Have a nice day,

Valery


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

-- 
Paul Schmehl (pauls () utdallas edu)
Adjunct Information Security Officer
The University of Texas at Dallas
http://www.utdallas.edu/ir/security/
---------------------------------------------------------------------- 
---
Using Tomcat but need to do more? Need to support web services,  
security?
Get stuff done quickly with pre-integrated technology to make your  
job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache  
Geronimo
http://sel.as-us.falkag.net/sel? 
cmd=lnk&kid=120709&bid=263057&dat=121642______________________________ 
_________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users

- --
Martin Roesch - Founder/CTO, Sourcefire Inc. - +1-410-290-1616
Sourcefire - Security for the Real World - http://www.sourcefire.com
Snort: Open Source Network IDS - http://www.snort.org




-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (Darwin)

iD8DBQFE4KDcqj0FAQQ3KOARAkQmAJ41t3M2ltLg8XycxfZpN2E2g7MfvQCfZqVJ
KRiLqCipEw90BylIuN2Uzs0=
=Pebl
-----END PGP SIGNATURE-----

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: