[25028] in bugtraq
SOAP::Lite hole
daemon@ATHENA.MIT.EDU (quentyn@fotango.com)
Thu Apr 11 15:13:57 2002
Message-ID: <3CB5A501.73A215DD@fotango.com>
Date: Thu, 11 Apr 2002 16:00:17 +0100
From: quentyn@fotango.com
MIME-Version: 1.0
To: bugtraq@securityfocus.com
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
I have searched through the archives and don't see anything about this
http://use.perl.org/articles/02/04/09/000212.shtml?tid=5
looks like quite a serious hole in SOAP::Lite
looks like it was announced http://www.phrack.com/show.php?p=58&a=9 a
while ago and then in the link above on the 08.04.02
Q
--- note to moderator ----
I am not the discoverer (or linked in any way), just thought it looked
quite serious and had not had much attention.
googling for
http://www.google.com/search?hl=en&q=free+SOAP+services
shows loads of publicly available SOAP services
if this is not bugtraqable could you fwd it to Blue Boar ?
--
#####################
Quentyn Taylor
Sysadmin - Fotango
#####################
Debugging is twice as hard as writing the code in the first place.
Therefore, if you write the code as cleverly as possible, you are, by
definition, not smart enough to debug it.
Kernighan