The Register® — Biting the hand that feeds IT

Comments on: Oracle warns over unpatched vuln

Some bugs are a right bugger of a BOFH if you don't deal with them right. 

Posted Tuesday 29th July 2008 13:55 GMT

Heart

"By sending a specially-malformed HTTP POST request attackers might be able to assault vulnerable systems without needing either user names or passwords, an alert on the bug by IBM's X-force security division warns."

And then there is also the ZerodDay Opportunist, the Yin of that Negative Yang, who would be into sending especially-informed HTTP POSTs, which may or may not be requests for anything.

Webcast: Jumpstart your Application Security initiatives