
Bugtraq mailing list archives
Re: Another hole in Cart32
From: aleph1 () SECURITYFOCUS COM (Elias Levy)
Date: Mon, 22 May 2000 12:30:13 -0700
Notice that this is the same or a similar vulnerability reported by ISS in their February 1, 200 security alert "Form Tampering Vulnerabilities in Several Web-Based Shopping Cart Applications". Although they don't give enough details to tell one way or another. In that alert they mention Cart32 2.6. It seems the vendor has not learned from their earlier mistake. -- Elias Levy SecurityFocus.com http://www.securityfocus.com/ Si vis pacem, para bellum
Current thread:
- Buffer overflows in Skyline/SpinBox client Tollef Fog Heen (Apr 30)