Re: Apache mod_ssl off-by-one vulnerability

2002-06-29 Thread Jedi/Sector One
On Thu, Jun 27, 2002 at 04:32:32PM -0500, [EMAIL PROTECTED] wrote: > i downloaded mod_ssl-2.8.9-1.3.26 from the modssl.org archive and verified > that it does have the off-by-one error, so it appears that there was a mistake > in the vulnerability advisory. Yes, there was a typo. All vers

SSI & CSS execution in E-Guest (1.1) & ZAP Book (v1.0.3)

2002-06-29 Thread DownBload
[ DownBload Security Research Lab Advisory ] [-] Advisory name: SSI & CSS execution in E-Guest (1.1) & ZAP Book (v1.0.3) Advisory number: 6 Application: E-Guest (1.1) & ZAP Book (v1.0.3) (CGI scripts) --