[Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities

Joe Hancock joe.hancock at gmail.com
Fri Mar 2 14:43:36 GMT 2007


I was also going to query the way vulnerabilities are rated on a
personal level here...

Significance: Double Plus Ungood

It's always nice to see problems being solved instead of just
targeted, while maintaining disclosure though Sebastian.

Regards,

Joe.

On 02/03/07, Knud Erik Højgaard <kokanin at gmail.com> wrote:
> On 3/2/07, sbauer at gjl-network.net <sbauer at gjl-network.net> wrote:
>
> > Significance: Very Critical>
> For who, the sauce-people? Not for me.
>
> > All problems found have been discussed with Unilever, the mother
> > company of Knorr and
> > have been fixed before the release of this document.
>
> Sooo, why should anyone besides you and the sauce-people care?
>
> --
> kokanin
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>




Full-Disclosure is hosted and sponsored by Secunia.