Bugtraq mailing list archives
Re: Posible security bug in phpMyWebhosting
From: Udo "Müller" <info () cs-ol de>
Date: 19 Aug 2004 08:07:19 -0000
In-Reply-To: <200408141441.44157.matias () neiff com ar> Hi Matias, On Sat, 14 Aug 2004 14:41:42 -0300 you wrote:
Hi all. There is a posible security bug in the phpMyWebhosting (http://sourceforge.net/projects/phpmywebhosting/) File: includes/functions/pmwh.php Function: test [...]>Proof of concept: try using usr: admin"-( pass: "asdfasdf
I am the main developer of this piece of software and not amused that you didn't mail about this bug. But: I tried with actual version 0.4.0 (and also earlier version) and can't reproduce your security bug. If I enter your information I get a "Wrong password" message. Could you please explain this? Regards Udo Müller dev@PHPMyWebHosting
Current thread:
- Posible security bug in phpMyWebhosting Matias Neiff (Aug 14)
- <Possible follow-ups>
- Re: Posible security bug in phpMyWebhosting Müller (Aug 19)
- Re: Posible security bug in phpMyWebhosting Daniel Souza (Aug 20)
- Re: Posible security bug in phpMyWebhosting Udo Mueller (Aug 20)
- Re: Posible security bug in phpMyWebhosting Daniel Souza (Aug 20)
- Re: Fwd: Re: Posible security bug in phpMyWebhosting Matias Neiff (Aug 23)