Re: [WebDNA] PCI fubar

This WebDNA talk-list message is from

2012


It keeps the original formatting.
numero = 109173
interpreted = N
texte = Hi Robert! WebDNA 7.1 should work fine with any version of mamp. - chris On Jun 8, 2012, at 20:27, Robert Minor wrote: > Anyone install webdna with mamp? what version of mamp, what version of = webdna? >=20 > On Jun 8, 2012, at 5:05 PM, Robert Minor wrote: >=20 >> I have a server running apache1.3 and webdna 6.0a. After PCI testing = I recieved a series of issues that had to be addressed. I was able to = mitigate all of them save 1.=20 >>=20 >> Apache HTTP Server httpOnly Cookie Information Disclosure >>=20 >> It seems apache1.3 is vulnerable to this attack and the only way to = pass is to upgrade to apache2.2.2.=20 >>=20 >> So just a few questions.=20 >>=20 >> Can I run apache2.2 under tiger 10.4? I assume yes.=20 >> does the webdna module have to be upgraded?=20 >> if so what version? What issues can I expect?=20 >> Do I need to just rebuild the server under leopard = 10.5--------------------------------------------------------- >> This message is sent to you because you are subscribed to >> the mailing list . >> To unsubscribe, E-mail to: >> archives: http://mail.webdna.us/list/talk@webdna.us >> Bug Reporting: support@webdna.us >=20 > --------------------------------------------------------- > This message is sent to you because you are subscribed to > the mailing list . > To unsubscribe, E-mail to: > archives: http://mail.webdna.us/list/talk@webdna.us > Bug Reporting: support@webdna.us Associated Messages, from the most recent to the oldest:

    
  1. Re: [WebDNA] PCI fubar (Donovan Brooke 2012)
  2. Re: [WebDNA] PCI fubar (Donovan Brooke 2012)
  3. Re: [WebDNA] PCI fubar (Donovan Brooke 2012)
  4. Re: [WebDNA] PCI fubar (Donovan Brooke 2012)
  5. Re: [WebDNA] PCI fubar (christophe.billiottet@webdna.us 2012)
  6. Re: [WebDNA] PCI fubar (Robert Minor 2012)
  7. [WebDNA] PCI fubar (Robert Minor 2012)
Hi Robert! WebDNA 7.1 should work fine with any version of mamp. - chris On Jun 8, 2012, at 20:27, Robert Minor wrote: > Anyone install webdna with mamp? what version of mamp, what version of = webdna? >=20 > On Jun 8, 2012, at 5:05 PM, Robert Minor wrote: >=20 >> I have a server running apache1.3 and webdna 6.0a. After PCI testing = I recieved a series of issues that had to be addressed. I was able to = mitigate all of them save 1.=20 >>=20 >> Apache HTTP Server httpOnly Cookie Information Disclosure >>=20 >> It seems apache1.3 is vulnerable to this attack and the only way to = pass is to upgrade to apache2.2.2.=20 >>=20 >> So just a few questions.=20 >>=20 >> Can I run apache2.2 under tiger 10.4? I assume yes.=20 >> does the webdna module have to be upgraded?=20 >> if so what version? What issues can I expect?=20 >> Do I need to just rebuild the server under leopard = 10.5--------------------------------------------------------- >> This message is sent to you because you are subscribed to >> the mailing list . >> To unsubscribe, E-mail to: >> archives: http://mail.webdna.us/list/talk@webdna.us >> Bug Reporting: support@webdna.us >=20 > --------------------------------------------------------- > This message is sent to you because you are subscribed to > the mailing list . > To unsubscribe, E-mail to: > archives: http://mail.webdna.us/list/talk@webdna.us > Bug Reporting: support@webdna.us christophe.billiottet@webdna.us

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

DataBaseHelper Flawed (1997) WebCatalog can't find database (1997) Post Limits (1998) Does update cart input have to be a submit? (2005) Final Receipt (1999) Generating Report Totals (1997) WebCat2 - many [carts] on one template page? (1997) OT - royalty free images (2002) bug in [SendMail] (1997) GuestBook example (1997) TCPconnect issue (2000) PSC recommends what date format yr 2000??? (1997) Verifying both name and password (was: THANKS) (1997) WebCatalog2 Feature Feedback (1996) Searchable WebCat (etc.) Docs ? (1997) Email notification to one of multiple vendors ? (1997) suffix mapping for NT? (1997) ImageMagick (2005) Location of Browser Info.txt file (1997) bull, f**k (1998)