Full Disclosure mailing list archives
Re: Cross-Site Scripting attacks via redirectors in different browsers
From: darky <mlistdarky () gmail com>
Date: Fri, 18 Sep 2009 20:21:16 +0200
MustLive said:
Hello Full-Disclosure! I already sent this letter to Bugtraq at 6th of September, but they declined to post it without any explanation - maybe it was due to some politic reasons :-). Will see how it'll be with your list.
Or maybe cause it's not a browser security issue :) Escaping user's inputs depends from the context, that's all. It's a server-side problem, the application must PROPERLY sanatise inputs. _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Cross-Site Scripting attacks via redirectors in different browsers MustLive (Sep 17)
- Re: Cross-Site Scripting attacks via redirectors in different browsers darky (Sep 18)
- Re: Cross-Site Scripting attacks via redirectors in different browsers Tõnu Samuel (Sep 20)
- Re: Cross-Site Scripting attacks via redirectors in different browsers MustLive (Sep 22)