[Mono-bugs] [Bug 418620] Sys.Web is prone to "HTTP header injection" attacks

bugzilla_noreply at novell.com bugzilla_noreply at novell.com
Wed Aug 20 07:31:35 EDT 2008


https://bugzilla.novell.com/show_bug.cgi?id=418620

User mhabersack at novell.com added comment
https://bugzilla.novell.com/show_bug.cgi?id=418620#c5





--- Comment #5 from Marek Habersack <mhabersack at novell.com>  2008-08-20 05:31:35 MDT ---
(In reply to comment #1 from Gert Driesen)
> I assume this is the blog entry you're talking about:
> http://blogs.msdn.com/esiu/archive/2007/09/22/http-header-injection-vulnerabilities.aspx
> 
> standalone repro added as gert/standalone/bug418620 in SVN.
The test fails to run:

Unknown function 'framework::get-frameworks'.
Expression: ${framework::get-frameworks('installed desktop')}


-- 
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug.


More information about the mono-bugs mailing list