lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-Id: <200903310807.n2V87DX9015209@www3.securityfocus.com> Date: Tue, 31 Mar 2009 02:07:13 -0600 From: tiha@...faweb.net To: bugtraq@...urityfocus.com Subject: Re: [ECHO_ADV_103$2009] taifajobs <= 1.0 (jobid) Remote SQL Injection Vulnerability A fix has been done on this problem, one can no longer pass sql scripts and validation is done to ensure that the jobid actually exist before executing of and sql script