<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"><html><head><meta content="text/html;charset=UTF-8" http-equiv="Content-Type"></head><body >Hi&nbsp;Kim,<br><br>Thanks&nbsp;for&nbsp;spending&nbsp;your&nbsp;time&nbsp;to&nbsp;scan&nbsp;vtiger&nbsp;CRM&nbsp;5&nbsp;GA,&nbsp;your&nbsp;report&nbsp;will&nbsp;be&nbsp;very&nbsp;much&nbsp;useful&nbsp;in&nbsp;identifying&nbsp;the&nbsp;vunerability.<br>We'll&nbsp;take&nbsp;up&nbsp;the&nbsp;vulnerabilities&nbsp;which&nbsp;are&nbsp;rated&nbsp;'high'&nbsp;and&nbsp;will&nbsp;try&nbsp;to&nbsp;fix&nbsp;most&nbsp;of&nbsp;them&nbsp;in&nbsp;our&nbsp;5.0.x&nbsp;patch&nbsp;releases.<br><br>Regards,<br>Philip&nbsp;<br><br><br><br><br>----&nbsp;On&nbsp;Sat,&nbsp;30&nbsp;Sep&nbsp;2006&nbsp;Kim&nbsp;Haverblad&nbsp;&lt;kim@haverblad.se&gt;&nbsp;wrote&nbsp;----&nbsp;<br><br>Made&nbsp;some&nbsp;scan&nbsp;of&nbsp;vtiger&nbsp;5.0ga&nbsp;on&nbsp;on&nbsp;a&nbsp;test&nbsp;server&nbsp;running&nbsp;Debian&nbsp;and&nbsp;to<br>be&nbsp;mentioned&nbsp;is&nbsp;that&nbsp;the&nbsp;scan&nbsp;has&nbsp;be&nbsp;done&nbsp;by&nbsp;using&nbsp;the&nbsp;admin&nbsp;account&nbsp;on<br>a&nbsp;newly&nbsp;fresh&nbsp;installation.&nbsp;I&nbsp;was&nbsp;kind&nbsp;of&nbsp;curious&nbsp;to&nbsp;see&nbsp;what&nbsp;I&nbsp;would<br>get.&nbsp;The&nbsp;Accunetix&nbsp;scanners&nbsp;shows&nbsp;79&nbsp;high,&nbsp;16&nbsp;medium&nbsp;and&nbsp;261&nbsp;low&nbsp;alerts<br>so&nbsp;it&nbsp;might&nbsp;be&nbsp;of&nbsp;interest&nbsp;for&nbsp;some&nbsp;developers.<br>--&nbsp;<br>Regards,<br>Kim&nbsp;Haverblad<br>tel:&nbsp;070-728&nbsp;37&nbsp;86<br>http://www.haverblad.se<br>_______________________________________________<br>Get&nbsp;started&nbsp;with&nbsp;Online&nbsp;collaboration&nbsp;office&nbsp;&&nbsp;productivity&nbsp;tools&nbsp;-&nbsp;http://zoho.com?vt&nbsp;<br></body></html>