http://bugzilla.novell.com/show_bug.cgi?id=550364 Summary: Restrict access to host settings Classification: openSUSE Product: openSUSE 11.2 Version: Factory Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: WebYaST AssignedTo: kkaempf@novell.com ReportedBy: jreidinger@novell.com QAContact: qa@suse.de Blocks: 514382 Found By: --- Attacker can change freely url of target machine. This can lead to man-in-middle attack. ( e.g. change mymachine.org to mymachnie.org and privileged user use this fake site to login) -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.