Excerpt from: Cenzic SmartAttack Updates for Web Vulnerabilities
|
 |
| July 18, 2008 | | Cenzic’s SmartAttack arsenal adds Sun Java System Web Server Certificate Revocation Access Control Bypass Vulnerability | Sun Java System Web Server Certificate Revocation Access Control Bypass vulnerability (BugtraqID 22973) was added to Cenzic’s CIA Web Server Configuration SmartAttack arsenal this week. To learn more details on how you can automatically update your Cenzic Hailstorm product, visit our Website. Background on Cenzic’s SmartAttacks Every week, Cenzic’s suite of product is updated with the latest vulnerabilities (custom, commercial, and open-source) to use when it emulates a hacker and attacks our customer’s websites to detect their security posture. These Web application vulnerabilities include (but not limited to) cross site scripting, buffer overflow, path or directory traversal, SQL injection, HTTP response splitting, and other workflow types. by Erin Swanson ESwanson@cenzic.com | | |
|
|