We (for one) would appreciate if you keep sending these.<br><br>- Aviram<br><br><div class="gmail_quote">On Thu, Jun 26, 2008 at 5:10 PM, George A. Theall <<a href="mailto:theall@tenablesecurity.com">theall@tenablesecurity.com</a>> wrote:<br>
<blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">Milw0rm 5943 seems to be a dup of milw0rm 3944 / CVE-2007-2792. Both involve a SQL injection issue in the 'listid' parameter.<br>
<br>
Btw, just so it's clear, I don't intend these sorts of posts to be critical of str0ke but to raise awareness among all vdb maintainers. If you'd rather I keep the messages private, let me know.<br>
<br>
George<br><font color="#888888">
-- <br>
<a href="mailto:theall@tenablesecurity.com" target="_blank">theall@tenablesecurity.com</a><br>
<br>
<br>
<br>
</font></blockquote></div><br>