GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Embed Notice

HTML Code

Corresponding Notice

  1. Embed this notice
    Kevin Beaumont (gossithedog@cyberplace.social)'s status on Friday, 26-Apr-2024 02:46:59 JSTKevin BeaumontKevin Beaumont
    in reply to

    If anybody looks at that exploit and says 'hey that curl command doesn't work', I know, you have to fix it.

    The +CSCOE+/sdesktop/webstart.xml attack surface is a bit nuts. It takes any parameters you specify and echos them back. Also, that whole area is exposed even if you disable webvpn (which is supposed to be end of life feature) - the code is still just sat there.

    In conversationabout a year ago from cyberplace.socialpermalink
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.