Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-4385
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-4385

Description:
OWASP Stinger before 2.5 allows remote attackers to bypass input validation routines by using multipart encoded requests instead of form-urlencoded requests. NOTE: this might be used to expose vulnerabilities in applications that would otherwise be protected by the validation routines.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/35981

ST
  1018555

SREASON
  http://securityreason.com/securityalert/3035

SAID
  Secunia Advisory: SA26441

OSVDB
  39544

MISC
  http://o0o.nu/~meder/o0o_bypassing_servlet_input_validation_filters.txt

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/476288/100/0/threaded

BID
  25294


Return to the previous page.