[Secure-testing-commits] r10329 - data/CVE

atomo64-guest at alioth.debian.org atomo64-guest at alioth.debian.org
Fri Nov 7 20:17:00 UTC 2008


Author: atomo64-guest
Date: 2008-11-07 20:16:59 +0000 (Fri, 07 Nov 2008)
New Revision: 10329

Modified:
   data/CVE/list
Log:
New CSRF in nagios issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-11-07 12:43:18 UTC (rev 10328)
+++ data/CVE/list	2008-11-07 20:16:59 UTC (rev 10329)
@@ -1,3 +1,7 @@
+CVE-2008-XXXX [Nagios "cmd.cgi" Cross-Site Request Forgery]
+	- nagios3 <unfixed> (bug #504894)
+	TODO: check nagios2
+	NOTE: this is SA32610
 CVE-2008-XXXX [yzis insecure temp file]
 	- yzis 1.0~alpha1-2 (bug #504680)
 CVE-2008-XXXX [delayed attacks via cookies]




More information about the Secure-testing-commits mailing list