Re: [Full-disclosure] [SECURITY] [DSA 1639-1] New twiki packages execution of arbitrary code

2008-09-21 Thread webby devil
Steve, I just had a look at your patch and it seems to me that you just filter out the remote command execution and not the file disclosure in Twiki. http://security.debian.org/pool/updates/main/t/twiki/twiki_4.0.5-9.1etch1.diff.gz The configure file is patched with this if ( $image =~

Re: [Full-disclosure] Google Sacure

2007-10-27 Thread webby devil
ole: your site itself has problems! how are you going to solve others problems? Welcome ole! Your request has been directed to the Customer Servicedepartment. Please wait for our operator to answer your call. Call accepted by operator JC. Currently in room: JC. ole: any answers? JC: Hello Ole