Author: micah Date: 2005-06-24 01:47:59 +0000 (Fri, 24 Jun 2005) New Revision: 1271 Modified: data/CAN/list Log: claiming some todos Modified: data/CAN/list ==================================================================--- data/CAN/list 2005-06-23 23:18:07 UTC (rev 1270) +++ data/CAN/list 2005-06-24 01:47:59 UTC (rev 1271) @@ -248,6 +248,7 @@ NOTE: not-for-us (Actinic Catalog) CAN-2002-1731 (The System Request menu in IBM AS/400 allows local users to list valid ...) NOTE: not-for-us (IBM AS/400) +begin claimed by micah CAN-2002-1730 (ASPjar Guestbook 1.00 allows remote attackers to delete arbitrary ...) TODO: check CAN-2002-1729 (Cross-site scripting vulnerability (XSS) in ASPjar Guestbook 1.00 ...) @@ -286,6 +287,7 @@ TODO: check CAN-2002-1712 (Microsoft Windows 2000 allows remote attackers to cause a denial of ...) TODO: check +end claimed by micah CAN-2002-1711 (BasiliX 1.1.0 saves attachments in a world readable /tmp/BasiliX ...) NOTE: not-for-us (BasiliX) CAN-2002-1710 (The attachment capability in Compose Mail in BasiliX Webmail 1.1.0 ...)