|
Santa Clara, Calif. - April 6, 2000 - Perfecto Technologies, the leading
developer of Web application security management software, today
released its latest Black Watch Labs advisory that reveals how
BizDB, a database and search engine software by Cnctek, is vulnerable
to parameter tampering. Part of the installation is a CGI script,
�bizdb-search.cgi� which is used to search the BizDB database.
This script is vulnerable to modification of its parameter,
in such way that causes it to run user provided shell commands
on the server. For more information go to https://www.perfectotech.com/blackwatch/.
The latest additions to the
Application Security Alliance include: F5 Networks, the leader in Internet Traffic
and Content Management; GemStone Systems, Inc., the proven leader in technology and
services for eBusiness applications; Rainbow Technologies, a leading provider of
security solutions for Internet and eCommerce; Resonate, a leading provider of Internet
Services Management business solutions that ensure high availability, performance and
control of eBusiness applications; and Secant Technologies, Inc., a leading provider
of eBusiness infrastructure.
About
Black Watch Labs (www.perfectotech.com/blackwatch/)
Black Watch Labs is a research group operated by Perfecto Technologies
Inc., the leader in Web Application Security Management. Black
Watch Labs was established in order to further the knowledge
of the Internet community in the arena of Web application security
management. Black Watch Labs publishes security advisories regularly,
which are maintained at https://www.perfectotech.com/blackwatch/,
and are also posted to relevant security lists and Web sites.
Black Watch Labs also operates a Web application security mailing
list, which can be subscribed to at https://www.perfectotech.com/blackwatch/.
For more info about Black Watch Labs and Web Application Security
Management, please call (408) 855-9500 or email [email protected].
About
Perfecto Technologies
Founded in 1997 and headquartered in Santa Clara, Calif., Perfecto
Technologies is the leader in Web Application Security
Management software. AppShield, Perfecto Technologies flagship
product, is the first to provide extreme security for
customer-facing applications in dynamic Web site environments.
Perfecto Technologies has customers in many sectors including,
banking, e-tailing, finance, government and healthcare. Privately
held, Perfecto Technologies is funded by blue-chip venture capital
firms and industry leaders, including Sequoia Capital, Walden
and Intel Corporation. More information about Perfecto Technologies
may be obtained by visiting the Company's Web site at www.perfectotech.com
or by calling the Company directly at (408) 855-9500.
#
# #
For Immediate
Release
Contact:
Diane Fraiman
Perfecto Technologies, Inc.
(408) 855-9500
[email protected]
Kevin Pedraja
Sterling Communications
(408) 441-4100
[email protected]
|