Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 23 May 2006 19:23:48 +0000 (UTC)
From:      "Simon L. Nielsen" <simon@FreeBSD.org>
To:        ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   cvs commit: ports/security/vuxml vuln.xml ports/www/frontpage Makefile ports/www/mod_frontpage2-rtr Makefile
Message-ID:  <200605231923.k4NJNmQ3092728@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
simon       2006-05-23 19:23:48 UTC

  FreeBSD ports repository

  Modified files:
    security/vuxml       vuln.xml 
    www/frontpage        Makefile 
    www/mod_frontpage2-rtr Makefile 
  Log:
  Document frontpage -- cross site scripting vulnerability and point
  FORBIDDEN from the frontpage ports at it.
  
  While this is "only" a cross site scripting vulnerability it has some
  rather serious implications which can allow an attacker to take over a
  web site, so I'm keeping FORBIDDEN.
  
  Revision  Changes    Path
  1.1042    +49 -1     ports/security/vuxml/vuln.xml
  1.17      +1 -1      ports/www/frontpage/Makefile
  1.8       +1 -1      ports/www/mod_frontpage2-rtr/Makefile



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200605231923.k4NJNmQ3092728>