Bugtraq mailing list archives

Re: Dangers of posting images: Pretty examples


From: Dave Ahmad <da () securityfocus com>
Date: Fri, 12 Oct 2001 12:59:13 -0600 (MDT)


You can have script code execute as well, using event handlers like 'onmouseover' in the img tag.
Does anyone know which search engine software this is?

Dave Ahmad
Security Focus
www.securityfocus.com

On Thu, 11 Oct 2001, bugtraq wrote:

http://www.perl.com/search/index.ncsp?sp-q=%3C%69%6D%67%20%73%72%63%3D%68%74%74%70%3A%2F%2F%31%39%39%2E%31%32%35%2E%38%35%2E%34%36%2F%74%69%6D%65%2E%6A%70%67%3E

I've informed them over 1 month ago in regards to this and have been ignored.
About 50 other major sites are effected but there's no need to post them here.

- zeno () cgisecurity com




Current thread: