Re: TB2 Pro sending NT passwords cleartext

2000-04-12 Thread tbenzion
My name is Tal Benzion and I'm on the product management team for Timbuktu Pro at Netopia. I'm writing you in regards to your latest cleartext posting about Timbuktu cleartext vulnerabilities on security focus. Although Timbuktu Pro has always encrypted the passwords used to actually

Infonautic's getdoc.cgi may allow unauthorized access to documents

2000-04-12 Thread Elias Levy
- Forwarded message from Black Watch Labs [EMAIL PROTECTED] - Message-ID: [EMAIL PROTECTED] Date: Tue, 11 Apr 2000 16:23:49 -0700 From: Black Watch Labs [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Infonautic's getdoc.cgi may allow unauthorized access to documents Hello Elias, As

TalentSoft Web+ Input Validation Bug Vulnerability

2000-04-12 Thread John P. McNeely
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Sword Shield Enterprise Security, Inc. - Security Advisory www.sses.net, Copyright (c) 2000 Advisory: TalentSoft Web+ Input Validation Bug Vulnerability Release Date: April 12, 2000 Application:webpsvr Severity: A remote user can