[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] Re: [cobalt-security] Important news regarding Webalizer
- Subject: Re: [cobalt-users] Re: [cobalt-security] Important news regarding Webalizer
- From: flash22@xxxxxxx
- Date: Mon Nov 5 13:55:03 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
On Mon, 5 Nov 2001, Taco Scargo wrote:
> The version on pkg.nl.cobalt.com is not vulnerable as it does no reverse dns
> resolution !
Um, that's only half of the vulnerability, and you are assuming people
didn't enable reverse in apache ;)
The referrer tags are also subject to the issue....
gsh