Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Mon, 21 Jul 2008 01:16:12 +0200
From: Hanno Böck <hanno@...eck.de>
To: oss-security@...ts.openwall.com
Cc: coley@...re.org
Subject: CVE request: punbb < 1.2.19

http://punbb.informer.com/

From Changelog:
    *  Fixed an SMTP command injection vulnerability, discovered by Stefan 
Esser.
    * Fixed an XSS issue in include/parser.php, discovered by Dan Crowley.
    * Fixed issue with database returning the same user on multiple pages of 
the userlist, noticed by hcgtv.
    * Fixed several potential XSS vectors in moderate.php.

-- 
Hanno Böck		Blog:		http://www.hboeck.de/
GPG: 3DBD3B20		Jabber/Mail:	hanno@...eck.de

[ CONTENT OF TYPE application/pgp-signature SKIPPED ]

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ