|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 150
Members: 0
Total: 150
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
More Coppermine vulnerabilities! |
|
Posted: Thu Jan 31, 2008 2:05 pm |
|
|
waraxe |
Site admin |
|
|
Joined: May 11, 2004 |
Posts: 2407 |
Location: Estonia, Tartu |
|
|
|
|
|
|
|
|
|
|
Posted: Fri Feb 01, 2008 4:50 am |
|
|
gibbocool |
Advanced user |
|
|
Joined: Jan 22, 2008 |
Posts: 208 |
|
|
|
|
|
|
|
I was wondering, do you tell the developers about these vulnerabilities or do you let them find out from releasing them? |
|
|
|
|
Posted: Fri Feb 01, 2008 8:43 am |
|
|
pexli |
Valuable expert |
|
|
Joined: May 24, 2007 |
Posts: 665 |
Location: Bulgaria |
|
|
|
|
|
|
Quote: | Attacker must have Coppermine admin privileges. |
|
|
|
|
|
Posted: Fri Feb 01, 2008 10:15 am |
|
|
waraxe |
Site admin |
|
|
Joined: May 11, 2004 |
Posts: 2407 |
Location: Estonia, Tartu |
|
|
|
|
|
|
gibbocool wrote: | I was wondering, do you tell the developers about these vulnerabilities or do you let them find out from releasing them? |
In most cases i'm informing developers, they will release new version and then follows my advisory. I found Coppermine bugs allready in December 2007 |
|
|
|
|
Posted: Sat Feb 02, 2008 2:21 pm |
|
|
gibbocool |
Advanced user |
|
|
Joined: Jan 22, 2008 |
Posts: 208 |
|
|
|
|
|
|
|
very noble of you waraxe The internet would be full of script kiddies if you find and release bugs without giving time for them to be patched. |
|
|
|
|
www.waraxe.us Forum Index -> Coppermine Photo Gallery
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|