So, it was a hoax? :-)
Leon
On Wed, Jul 22, 2009 at 3:30 PM, Konstantin
Kolinkoknst.koli...@gmail.com wrote:
2009/7/22 Rémy Maucherat remy.mauche...@gmail.com:
On Wed, Jul 22, 2009 at 2:37 PM, Mark Thomasma...@apache.org wrote:
You'll need to provide more details. Nothing stands out from the
Konstantin Kolinko wrote:
2009/7/22 Rémy Maucherat remy.mauche...@gmail.com:
On Wed, Jul 22, 2009 at 2:37 PM, Mark Thomasma...@apache.org wrote:
You'll need to provide more details. Nothing stands out from the security
pages.
Please provide step by step instructions to reproduce from a
On Jul 23, 2009, at 4:00 AM, Mark Thomas wrote:
Konstantin Kolinko wrote:
2009/7/22 Rémy Maucherat remy.mauche...@gmail.com:
On Wed, Jul 22, 2009 at 2:37 PM, Mark Thomasma...@apache.org
wrote:
You'll need to provide more details. Nothing stands out from the
security pages.
Please provide
pankaj jairath wrote:
Hello,
I am using Tomcat 6.0.18 and have hit XSS issue, where in tweaked Host
header containing XSS is processed by the server. I suppose some
validation check should be done on the Host value to prevent such an
attack.
Appreciate any inputs are to whether this
On Wed, Jul 22, 2009 at 2:37 PM, Mark Thomasma...@apache.org wrote:
You'll need to provide more details. Nothing stands out from the security
pages.
Please provide step by step instructions to reproduce from a clean Tomcat
installation.
Please also note that potential security
2009/7/22 Rémy Maucherat remy.mauche...@gmail.com:
On Wed, Jul 22, 2009 at 2:37 PM, Mark Thomasma...@apache.org wrote:
You'll need to provide more details. Nothing stands out from the security
pages.
Please provide step by step instructions to reproduce from a clean Tomcat
installation.