You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@qpid.apache.org by Gordon Sim <gs...@redhat.com> on 2007/03/26 10:47:09 UTC

Re: [Qpid Wiki] Trivial Update of "FrontPage" by BernettaDegler

Apache Wiki wrote:
> Dear Wiki user,
> 
> You have subscribed to a wiki page or wiki category on "Qpid Wiki" for change notification.
> 
> The following page has been changed by BernettaDegler:
> http://wiki.apache.org/qpid/FrontPage
> 

Looks like we may have a security breach or an overly lenient access 
control policy on our wiki?

Re: [Qpid Wiki] Trivial Update of "FrontPage" by BernettaDegler

Posted by Carl Trieloff <cc...@redhat.com>.
I cleaned it up, however we should notify asf-infra

Carl.


Andrew Stitcher wrote:
> On Mon, 2007-03-26 at 12:42 +0100, Andrew Stitcher wrote:
>
>   
>> ...
>> This looks like a serious security breach - This page is on a completely
>> separate wiki from the project one, which implies to me that the server
>> or at least the httpd has been compromised.
>>     
>
> Actually this isn't actually the qpid wiki at all which is at
> cwiki.apache.org not wiki.apache.org, so it could just be lax editing
> policy.
>
>   
>> Andrew
>>
>>
>>     
>
>   


Re: [Qpid Wiki] Trivial Update of "FrontPage" by BernettaDegler

Posted by Andrew Stitcher <as...@redhat.com>.
On Mon, 2007-03-26 at 12:42 +0100, Andrew Stitcher wrote:

> ...
> This looks like a serious security breach - This page is on a completely
> separate wiki from the project one, which implies to me that the server
> or at least the httpd has been compromised.

Actually this isn't actually the qpid wiki at all which is at
cwiki.apache.org not wiki.apache.org, so it could just be lax editing
policy.

> 
> Andrew
> 
> 


Re: [Qpid Wiki] Trivial Update of "FrontPage" by BernettaDegler

Posted by Andrew Stitcher <as...@redhat.com>.
On Mon, 2007-03-26 at 09:47 +0100, Gordon Sim wrote:
> Apache Wiki wrote:
> > Dear Wiki user,
> > 
> > You have subscribed to a wiki page or wiki category on "Qpid Wiki" for change notification.
> > 
> > The following page has been changed by BernettaDegler:
> > http://wiki.apache.org/qpid/FrontPage
> > 
> 
> Looks like we may have a security breach or an overly lenient access 
> control policy on our wiki?

This looks like a serious security breach - This page is on a completely
separate wiki from the project one, which implies to me that the server
or at least the httpd has been compromised.

Andrew