|
Message-ID: <20150610071954.GF31310@lakka.kapsi.fi> Date: Wed, 10 Jun 2015 10:19:54 +0300 From: Henri Salo <henri@...v.fi> To: Marek Sebera <marek.sebera@...il.com> Cc: oss-security@...ts.openwall.com Subject: Re: Possible XSS vulnerability on NIST NVD -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On Tue, Jun 09, 2015 at 06:41:01PM +0200, Marek Sebera wrote: > https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-1729 I do not think this issue deserves CVE identifier. I notified them via general questions address in https://nvd.nist.gov/contact.cfm and they fixed it already. Please contact them directly if you notice more issues, thank you. - -- Henri Salo -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBAgAGBQJVd+UaAAoJECet96ROqnV0G5cP/jpx0uDj3yAAFOzZU876NMiC VWhtMigcwGJdnxNZGCpPKoIBJPqJ8YNkitgzq7KI3Pryvg2jwu2htc8aGY95EljL M81uCYMZnTwqvcCk/NyygbeEpZgA44WHFOMs3I8xOzcqPCnItp8sBGv5vDJ1M9kh Xm8hsKlaJ1MccE2FTBJ1a/vOMST8gf7fwBj1IRyjF4zRSSzn2rg1yInJcDC8bSkM Xbzr0df/NPpU3rbKPOalumYoyVtChEoUw6PMcJTXldpt5LvFICTfCKb93389w9TB 2H+zqMFOZif5nfkJph4BWAQC3DYxoYqiN3xWE0M877vkAb5avIwsfAuvKSRJpTWU ZzIeVW8JfHa4lvXlL5//WNH55UvwSybZoN51jyLtOzivFKC0arBSs76oKldD1f/C tKTQEOUD5gZsH2cn7aVM7R0Min2nu9jNO/CO8PUBJBCFQl3yqjQq3b3vqSC2WYqP LlaZ5Qf2pmA3Vz4o4GaTGJBbQOxUZU7rT7SYoMTVJ6rLl+V9htEUxPF7/hWCM257 widmLALca0tw7FbIKUYoMVQCQWF0a8UfXDVMK2UvzSIdpqMkglkMeCRxKGr1X99N 6h3d0Ug0t0Zlu1buH4uT+GpqGQD4gG84JKofUYe5sMCiIPAS+4LkBh4UIlafv8Z9 Aql4/RCBkVqYCNIlZClE =S6/L -----END PGP SIGNATURE-----
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.