-
dinis committed patchset 59 of module dotnet to the OWASP Source Code Center CVS repository, changing 2 files.
2006-11-03 16:09:28 UTC in OWASP Source Code Center
-
dinis committed patchset 58 of module dotnet to the OWASP Source Code Center CVS repository, changing 10 files.
2006-11-03 14:22:43 UTC in OWASP Source Code Center
-
dinis committed patchset 57 of module dotnet to the OWASP Source Code Center CVS repository, changing 12 files.
2006-11-03 11:43:19 UTC in OWASP Source Code Center
-
dinis committed patchset 44 of module dotnet to the OWASP Source Code Center CVS repository, changing 4 files.
2006-10-26 09:44:20 UTC in OWASP Source Code Center
-
dinis committed patchset 38 of module dotnet to the OWASP Source Code Center CVS repository, changing 2 files.
2006-10-25 17:03:17 UTC in OWASP Source Code Center
-
dinis committed patchset 37 of module dotnet to the OWASP Source Code Center CVS repository, changing 39 files.
2006-10-25 12:53:07 UTC in OWASP Source Code Center
-
dinis committed patchset 36 of module dotnet to the OWASP Source Code Center CVS repository, changing 6 files.
2006-10-25 12:37:36 UTC in OWASP Source Code Center
-
dinis committed patchset 10 of module dotnet to the OWASP Source Code Center CVS repository, changing 1 files.
2006-07-12 00:33:26 UTC in OWASP Source Code Center
-
8. this is an internal function which 'should not called' by normal back users, I think you just found a vulnerabilty :)
I agree with the need to enforce the SessionID, and my current plan is to only check if the SessionID is valid (i.e. is the user authenticated), which will make it more realistic, and still leave this massive vulnerability in there (i.e. normal users will be able to create...
2005-08-08 13:06:17 UTC in Foundstone Free Security Tools Project
-
1. I answered to your new post about this issue, and will wait for your answers so that I can reproduce the problem and fix it
2. I need to sort properly the currencies issue, since the original version of HacmeBank wanted to support multiple currencies, but that dramatically complicates the whole thing. So what i will do is to make all accounts USD and allow them to have decimals (if I am not...
2005-08-08 13:02:24 UTC in Foundstone Free Security Tools Project