Commit Graph

8 Commits

Author SHA1 Message Date
Michael Tremer
0aff7b8196 {proxy,chpasswd}.cgi: Fix a remote code execution vulnerability
Handcrafted requests with shell commands could be sent to these
CGI files and gain shell access as unprivileged user.

References: #11087

Reported-by: Yann Cam <yann.cam@gmail.com>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
2016-04-08 15:54:53 +01:00
Arne Fitzenreiter
18e7404874 chpasswd.cgi: fixed for new MD5 password hashes. 2012-01-21 20:13:54 +01:00
Arne Fitzenreiter
bb2795c789 Fix cgi permissions. 2009-11-29 14:34:11 +01:00
Jan Paul Tuecking
5be3900c32 Redesigned chpasswd.cgi 2009-11-27 23:59:53 +01:00
Christian Schmidt
8fb1a115bd Fixed 2 CGIs for core31 2009-08-29 21:48:45 +02:00
ms
70df830214 Ein Paar Dateien fuer die GPLv3 angepasst.
git-svn-id: http://svn.ipfire.org/svn/ipfire/trunk@853 ea5c0bd1-69bd-2848-81d8-4f18e57aeed8
2007-08-29 13:25:32 +00:00
ms
363fb6afce Geaendert:
* Squid auf neuesten Stand gebracht.
  * QoS-Fortschritt.
  * Kleines Script fuer Sprachdateiupdates.


git-svn-id: http://svn.ipfire.org/svn/ipfire/trunk@268 ea5c0bd1-69bd-2848-81d8-4f18e57aeed8
2006-09-10 19:52:20 +00:00
ms
ed38f89d27 Hinzugefügt:
* AdvancedProxy Fähigkeiten
Geändert:
  * Kleiner Fehler im OpenVPN GUI verblieben und daher behoben.


git-svn-id: http://svn.ipfire.org/svn/ipfire/trunk@153 ea5c0bd1-69bd-2848-81d8-4f18e57aeed8
2006-06-02 19:03:53 +00:00