re: Ariba Spend Management System

gerald626_at_gmail.com
Date: 09/01/05

  • Next message: Martin Schulze: "[SECURITY] [DSA 779-2] New Mozilla Firefox packages fix several vulnerabilities"
    Date: 1 Sep 2005 12:12:41 -0000
    To: bugtraq@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is) I would like to clarify some things.

    First, I would like to apologize for any mis-representaiton due to a lack of proper explanation on my part.

    My previous post was essentially true, that the username/password is being transmitted in clear text. However, it is not in the URL as I previously claimed; after a closer look, it is in a post request. Either way, the fact remains that it is still in the clear.

    I tested this with the Ariba Buyer application. The Ariba Spend Management System is a collection of applications. However, my understanding is that most, if not all, of the applicaitons in the suite utilize the same authentication method. Maybe somebody from Ariba can clarify this particular issue.

    For those of you who requested a sample of my packet capture, I will be sending it shortly.

    Gerald.


  • Next message: Martin Schulze: "[SECURITY] [DSA 779-2] New Mozilla Firefox packages fix several vulnerabilities"

    Relevant Pages

    • Re: Double coding of Castilian datives
      ... perhaps it's a dialect thing, or perhaps it has to do with style - hopefully someone here can clarify. ... For instance, in an Almodovar movie from Spain, the female lead just says ¡mirame mirame!, whereas the Mexican pop artist Paulina Rubio sings 'mirame a mi' with the double encoding. ... does the use of double encoding have social connotations as well? ...
      (sci.lang)
    • Re: download 70-270 ebook
      ... If I mistake, apologize from all ... But only I can?t clarify my purpose on that text. ...
      (microsoft.public.cert.exam.mcse)
    • Re: Enough is enough
      ... I apologize for our differences in terminology, ... to clarify. ... worlds club teams in a ten year span......aside from starting leagues, ...
      (rec.sport.disc)
    • Re: Fox News Admiits Lie on Obama Apology to Japan
      ... :>to clarify that the show's earlier report that President Obama had ... :>planned to apologize to Japan for Hiroshima was, in fact, not true. ... :>President Obama to the country of Japan for the United States dropping ...
      (soc.retirement)
    • Re: Finding a Value Between Two Numbers and Returning Corresponding Value
      ... Thank you for the quick responses. ... What I should clarify is this. ... I hope I am explaining this correctly. ... I apologize again. ...
      (microsoft.public.excel.programming)