↧
About CVE-2009-1151
During an evaluation of tools for internal use, we took a look at phpMyAdmin. During the assessment, we identified that the scripts/setup.php script is used to generate a configuration file to...
View ArticleDirectory Traversal in Archives
By: Greg Ose and Patrick Toomey I’m sure on the top of everyone’s list of resolutions from the New Year is the ever forgotten “I will write more secure code” and it seems that each year this task gets...
View ArticleNow, Where Did I Leave My Keys…
By: Greg Ose Even with the best intentions, secure storage of sensitive information is a common architectural issue that is typically overlooked by corporations in the development of applications....
View Article