[cisco-voip] Bug Search Code Injection

Anthony Holloway avholloway+cisco-voip at gmail.com
Tue Aug 20 10:35:03 EDT 2019


Looks like I stumbled across some code injection on the following defect
page:

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvq27976

It's innocent enough, but concerning that it's even possible.

[image: image.png]
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://puck.nether.net/pipermail/cisco-voip/attachments/20190820/8e9154e4/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image.png
Type: image/png
Size: 37328 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-voip/attachments/20190820/8e9154e4/attachment.png>


More information about the cisco-voip mailing list