Debian Security Advisory 3890-1

Discussion in 'News Aggregator' started by Packet Storm, 25 Jun 2017.

  1. Packet Storm

    Packet Storm Guest

    Debian Linux Security Advisory 3890-1 - Emeric Boit of ANSSI reported that SPIP, a website engine for publishing, insufficiently sanitises the value from the X-Forwarded-Host HTTP header field. An unauthenticated attacker can take advantage of this flaw to cause remote code execution.

    Continue reading...
     

Share This Page

Loading...