[11067] in bugtraq
Swish-e
daemon@ATHENA.MIT.EDU (Jean-Georges Estiot)
Sun Jul 18 02:37:08 1999
Message-Id: <19990717114528.65910.qmail@securityfocus.com>
Date: Sat, 17 Jul 1999 11:45:28 -0000
Reply-To: Jean-Georges Estiot <jg@STO.COM.AU>
From: Jean-Georges Estiot <jg@STO.COM.AU>
X-To: bugtraq@securityfocus.com
To: BUGTRAQ@SECURITYFOCUS.COM
I have seen some general comments about potential holes in
the perl frontend script provided with the Swish-e package.
These warning stop short of pointing to a way to exploit
the flaws.
Webmasters out there should be aware that anyone on the web
with a spare 15 min can fill their server(s) with any
number of potentially large files.
I'll stop short of describing the way to do it, for obvious
reasons.
JG Estiot