mldonkey-users
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Mldonkey-users] [patch #7517] HTTP: fix XSS in error handler


From: spiralvoice
Subject: [Mldonkey-users] [patch #7517] HTTP: fix XSS in error handler
Date: Mon, 28 Mar 2011 16:50:19 +0000
User-agent: Mozilla/5.0 (X11; Linux i686; rv:2.2a1pre) Gecko/20110328 Firefox/4.2a1pre

URL:
  <http://savannah.nongnu.org/patch/?7517>

                 Summary: HTTP: fix XSS in error handler
                 Project: mldonkey, a multi-networks file-sharing client
            Submitted by: mldonkeyuser777
            Submitted on: Mo 28 Mär 2011 18:50:18 CEST
                Category: None
                Severity: 3 - Normal
              Item Group: None
                  Status: None
             Assigned to: None
             Open/Closed: Open
         Discussion Lock: Any
                 Release: 
                 Release: None
        Operating System: None
         Binaries Origin: None
                CPU type: None

    _______________________________________________________

Details:

Hi, I just was testing my localhost with openvas and it launched nikto over
mldonkey webserver in port 4080, I do not know really about if it a false
warning or not.

this is a gentoo box:

Linux 2.6.38 #1 SMP Sun Mar 20 XX:54:51 CET 2011 i686 Intel(R) Pentium(R) 4
CPU 3.00GHz GenuineIntel GNU/Linux

net-p2p/mldonkey
      Latest version available: 3.0.5
      Latest version installed: 3.0.5
      Size of files: 2,715 kB

Log is attached.



    _______________________________________________________

Follow-up Comments:


-------------------------------------------------------
Date: Mi 18 Aug 2004 05:53:22 CEST  By: Walter Landry <landry>
The current config mechanism is awkward.  It is better to make a config into a
project of it's own.  Sort of like what is used for "tla grab".  Then "get",
"merge", etc. become natural operations.






    _______________________________________________________

Reply to this item at:

  <http://savannah.nongnu.org/patch/?7517>

_______________________________________________
  Nachricht geschickt von/durch Savannah
  http://savannah.nongnu.org/




reply via email to

[Prev in Thread] Current Thread [Next in Thread]