TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Only two remote holes in the default install, in more than 10 years

17 pointsby gopheralmost 17 years ago

6 comments

therealmost 17 years ago
oh no, a lame xss bug in a 3rd party cgi script that runs on a solaris web server hosting a website that uses no cookies. surely this is big news!
shadytreesalmost 17 years ago
You have achieved the difficult task of making CVS less usable.
dguidoalmost 17 years ago
This was posted on full-disclosure August 6th.<p><a href="http://seclists.org/fulldisclosure/2008/Aug/0074.html" rel="nofollow">http://seclists.org/fulldisclosure/2008/Aug/0074.html</a>
gstaralmost 17 years ago
I cant decide if that's classy or cheeky.<p>But regardless, I dont know if a bug in cvsweb counts as openbsd - does it?
评论 #282859 未加载
stassatsalmost 17 years ago
Is that a hole? Is that a default install?
评论 #282739 未加载
tptacekalmost 17 years ago
OH NOEZ! U G0TZ MY CVSWEB COOKEEZ!