Re: [Full-disclosure] Vulnerabilities in TAK cms

2010-04-08 Thread T Biehn
If there were an account lockout after 5 tries would you be telling us about how there was a DOS vector on the same software? -Travis On Mon, Apr 5, 2010 at 4:35 PM, MustLive mustl...@websecurity.com.ua wrote: Hello Full-Disclosure! I want to warn you about security vulnerabilities in TAK

Re: [Full-disclosure] Vulnerabilities in TAK cms

2010-04-08 Thread Benji
nah, he'd be telling us how that was an easy way to find valid accounts. -Benji On Thu, Apr 8, 2010 at 6:30 PM, T Biehn tbi...@gmail.com wrote: If there were an account lockout after 5 tries would you be telling us about how there was a DOS vector on the same software? -Travis On Mon, Apr

[Full-disclosure] Vulnerabilities in TAK cms

2010-04-06 Thread MustLive
Hello Full-Disclosure! I want to warn you about security vulnerabilities in TAK cms. It's Ukrainian commercial CMS. - Advisory: Vulnerabilities in TAK cms - URL: http://websecurity.com.ua/4050/ - Timeline: