[<prev] [next>] [day] [month] [year] [list]
Message-ID: <20030801004057.H11114-100000@dekadens.ghettot.org>
Date: Fri, 1 Aug 2003 00:41:47 +0200 (CEST)
From: Michal Zalewski <lcamtuf@...ttot.org>
To: full-disclosure@...ts.netsys.com
Cc: bugtraq@...urityfocus.com, Michael Scheidell <scheidell@...nap.net>
Subject: Re: Insufficient input checking on web site allows
dangerous HTML TAGS
On Thu, 31 Jul 2003, Michael Scheidell wrote:
> Severity: Serious
> Category: Arbitrary Execution of HTML of Hackers Choice
HTML gets executed nowadays?
--
------------------------- bash$ :(){ :|:&};: --
Michal Zalewski * [http://lcamtuf.coredump.cx]
Did you know that clones never use mirrors?
--------------------------- 2003-08-01 00:40 --
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Powered by blists - more mailing lists