<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: BBpress XSS vulnerability</title>
	<atom:link href="http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/</link>
	<description>Security Tools and Tips</description>
	<lastBuildDate>Fri, 18 Nov 2011 18:51:25 -0600</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.3</generator>
	<item>
		<title>By: Sam Bauers</title>
		<link>http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/comment-page-1/#comment-251</link>
		<dc:creator>Sam Bauers</dc:creator>
		<pubDate>Thu, 21 Jun 2007 01:52:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/#comment-251</guid>
		<description>This has been fixed in version 0.8.2.1 of bbPress.

Back to zero vulnerabilities.</description>
		<content:encoded><![CDATA[<p>This has been fixed in version 0.8.2.1 of bbPress.</p>
<p>Back to zero vulnerabilities.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dragos Lungu</title>
		<link>http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/comment-page-1/#comment-132</link>
		<dc:creator>Dragos Lungu</dc:creator>
		<pubDate>Mon, 11 Jun 2007 13:03:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/#comment-132</guid>
		<description>@Jordan
Yes, the referral check was the big show stopper for a 0 day announcement :)  
However, validating the $re variable takes only one line of code just like it&#039;s done with the user login : 
$user_login = user_sanitize ( @$_POST[&#039;user_login&#039;] );</description>
		<content:encoded><![CDATA[<p>@Jordan<br />
Yes, the referral check was the big show stopper for a 0 day announcement <img src='http://www.dragoslungu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
However, validating the $re variable takes only one line of code just like it&#8217;s done with the user login :<br />
$user_login = user_sanitize ( @$_POST['user_login'] );</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jordan</title>
		<link>http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/comment-page-1/#comment-130</link>
		<dc:creator>Jordan</dc:creator>
		<pubDate>Mon, 11 Jun 2007 11:03:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/#comment-130</guid>
		<description>Still, the fact that they are doing referer checking somewhat mitigates the attack.  Sure, there&#039;s a couple of hacks around it, but generally speaking it makes actually implementing this attack in the wild much more difficult than it would have otherwise.  Defense in depth, right?</description>
		<content:encoded><![CDATA[<p>Still, the fact that they are doing referer checking somewhat mitigates the attack.  Sure, there&#8217;s a couple of hacks around it, but generally speaking it makes actually implementing this attack in the wild much more difficult than it would have otherwise.  Defense in depth, right?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ory Segal</title>
		<link>http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/comment-page-1/#comment-119</link>
		<dc:creator>Ory Segal</dc:creator>
		<pubDate>Sun, 10 Jun 2007 11:58:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/#comment-119</guid>
		<description>http://blog.watchfire.com/wfblog/2007/06/a_few_blurbs.html</description>
		<content:encoded><![CDATA[<p><a href="http://blog.watchfire.com/wfblog/2007/06/a_few_blurbs.html" rel="nofollow">http://blog.watchfire.com/wfblog/2007/06/a_few_blurbs.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Top 10 Open Source Forums - 12 Months of Vulnerabilities &#124; Dragos Lungu Dot Com</title>
		<link>http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/comment-page-1/#comment-97</link>
		<dc:creator>Top 10 Open Source Forums - 12 Months of Vulnerabilities &#124; Dragos Lungu Dot Com</dc:creator>
		<pubDate>Thu, 07 Jun 2007 11:06:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/06/07/bbpress-xss-vulnerability/#comment-97</guid>
		<description>[...] : BBpress XSS Vulnerability Beehive : [...]</description>
		<content:encoded><![CDATA[<p>[...] : BBpress XSS Vulnerability Beehive : [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

