[40956] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Remote File Inclusion in forum PunBB

daemon@ATHENA.MIT.EDU (arpen@securityfocus.com,home@secur)
Sat Oct 29 20:36:42 2005

Date: 29 Oct 2005 16:05:03 -0000
Message-ID: <20051029160503.18715.qmail@securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: arpen@securityfocus.com, home@securityfocus.com, se@securityfocus.com
To: bugtraq@securityfocus.com

1. The bug is over a year old (see bid 10760).
2. The bug was fixed in 1.1.5, so that version is not vulnerable.
3. It was discovered by Radek Hulan, not "RoDheDoR".
4. The exploit detailed is copied directly from the old bid so "RoDheDoR" was obviously aware of it.

The nerve of some of these reporters never seizes to amaze me.

home help back first fref pref prev next nref lref last post