Re: Multiple Injection Vulnerabilities in PHP PEAR::Auth Module

2006-02-22 Thread Matt Van Gundy
itable. No exploitable vulnerabilities have been found in the other containers yet. Cheers, Matt Van Gundy -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.2 (Darwin) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQFD/NT1fdMeesRSEA0RA3XjAJ0V1wqrMPrQMDC/DLg2wc5i25/DPw

Multiple Injection Vulnerabilities in PHP PEAR::Auth Module

2006-02-22 Thread Matt Van Gundy
.01.30 - Vendor notified 2006.02.08 - Other developers contacted 2006.02.15 - Fix released 2006.02.21 - Public disclosure to Bugtraq DISCOVERED BY: Matt Van Gundy ^ remove the -spam to get past my spamtrap signature.asc Description: OpenPGP digital signature