Vulnerability Development mailing list archives

[012401] sendform.cgi ?vulnerability?


From: Erik Tayler <erik () DIGITALDEFENSE NET>
Date: Wed, 24 Jan 2001 14:58:18 -0600

This message is in MIME format. Since your mail reader does not understand
this format, some or all of this message may not be legible.

------ =_NextPart_001_01C08648.60C6E620
Content-Type: text/plain;
        charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Anybody have any information about sendform.cgi vulnerabilities. I am
encountering a bunch of directory traversal vulnerabilities with it, =
but
I can't find any definitive information regarding the possibility. If
anyone has information pertinent to this script, I would be grateful if
you send me some links. I run searches on google, and I do find
information, just not what I'm looking for.
=A0
Thanks in advance,
=A0
Erik Tayler
Security Analyst
Digital Defense Incorporated
http://www.digitaldefense.net

------ =_NextPart_001_01C08648.60C6E620
Content-Type: text/html;
        charset="iso-8859-1"

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=us-ascii">


<META content="MSHTML 5.50.4522.1800" name=GENERATOR></HEAD>
<BODY>
<DIV><FONT face=Arial size=2><SPAN class=005444720-24012001>Anybody have any
information about sendform.cgi vulnerabilities. I am encountering a bunch of
directory traversal vulnerabilities with it, but I can't find any definitive
information regarding the possibility. If anyone has information pertinent to
this script, I would be grateful if you send me some links. I run searches on
google, and I do find information, just not what I'm looking
for.</SPAN></FONT></DIV>
<DIV><FONT face=Arial size=2><SPAN
class=005444720-24012001></SPAN></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2><SPAN class=005444720-24012001>Thanks in
advance,</SPAN></FONT></DIV>
<DIV><FONT face=Arial size=2><SPAN
class=005444720-24012001></SPAN></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2><SPAN class=005444720-24012001>Erik
Tayler</SPAN></FONT></DIV>
<DIV><FONT face=Arial size=2><SPAN class=005444720-24012001>Security
Analyst</SPAN></FONT></DIV>
<DIV><FONT face=Arial size=2><SPAN class=005444720-24012001>Digital Defense
Incorporated</SPAN></FONT></DIV>
<DIV><FONT face=Arial size=2><SPAN class=005444720-24012001><A
href="http://www.digitaldefense.net";>http://www.digitaldefense.net</A></SPAN></FONT></DIV></BODY></HTML>

------ =_NextPart_001_01C08648.60C6E620--


Current thread: