FreshPorts - VuXML
This page displays vulnerability information about FreeBSD Ports.
The last vuln.xml file processed by FreshPorts is:
Revision: 318524
Date: 2013-05-19
Time: 14:06:36Z
Committer: rakuco
List all Vulnerabilities, by package
List all Vulnerabilities, by date
These are the vulnerabilities relating to the commit you have selected:
| VuXML ID | Description |
| 115a1389-858e-11e0-a76c-000743057ca2 | Pubcookie Login Server -- XSS vulnerability
Nathan Dors, Pubcookie Project reports:
A new non-persistent XSS vulnerability was found in the
Pubcookie login server's compiled binary "index.cgi" CGI
program. The CGI program mishandles untrusted data when
printing responses to the browser. This makes the program
vulnerable to carefully crafted requests containing script
or HTML. If an attacker can lure an unsuspecting user to
visit carefully staged content, the attacker can use it to
redirect the user to his or her local Pubcookie login page
and attempt to exploit the XSS vulnerability.
Discovery 2007-05-25 Entry 2011-05-23 pubcookie-login-server
lt 3.3.2d
http://pubcookie.org/news/20070606-login-secadv.html
|
| 115a1389-858e-11e0-a76c-000743057ca2 | Pubcookie Login Server -- XSS vulnerability
Nathan Dors, Pubcookie Project reports:
A new non-persistent XSS vulnerability was found in the
Pubcookie login server's compiled binary "index.cgi" CGI
program. The CGI program mishandles untrusted data when
printing responses to the browser. This makes the program
vulnerable to carefully crafted requests containing script
or HTML. If an attacker can lure an unsuspecting user to
visit carefully staged content, the attacker can use it to
redirect the user to his or her local Pubcookie login page
and attempt to exploit the XSS vulnerability.
Discovery 2007-05-25 Entry 2011-05-23 pubcookie-login-server
lt 3.3.2d
http://pubcookie.org/news/20070606-login-secadv.html
|