Bugtraq mailing list archives

Re: Unsecured server in applets under Netscape


From: th () NEXTEL NO (Tor Houghton)
Date: Thu, 4 Feb 1999 11:58:17 +0100


On Tue, 2 Feb 1999, Giao Nguyen wrote:

Just for kicks, I wrote a sample applet that listened on a socket. I
discovered that when the applet was loaded under Netscape (as tested
with version 4.5), any hosts could then connect to the machine running
this applet. I won't bore anyone with the code because it's so trivial
that a novice to Java should be able to write it with ease after
reading some documentation.

This is not specific to 4.5. I am running 4.07, and it displays the same
behaviour.

Regards,

Tor Houghton



Current thread: