Bugtraq mailing list archives

Re: Another hole in Cart32


From: aleph1 () SECURITYFOCUS COM (Elias Levy)
Date: Mon, 22 May 2000 12:30:13 -0700


Notice that this is the same or a similar vulnerability reported
by ISS in their February 1, 200 security alert "Form Tampering Vulnerabilities
in Several Web-Based Shopping Cart Applications". Although they don't
give enough details to tell one way or another. In that alert they
mention Cart32 2.6. It seems the vendor has not learned from their
earlier mistake.

--
Elias Levy
SecurityFocus.com
http://www.securityfocus.com/
Si vis pacem, para bellum



Current thread: