Full Disclosure mailing list archives
Re: weblogin software cross site request
From: jericho <jericho () attrition org>
Date: Fri, 17 Jul 2015 18:05:44 -0500 (CDT)
: Dork: intitle:weblogin intext:"This page will redirect you to:" A single site runs this 'WebLogin'. : Product:WebLoginWhat is the vendor URL? Or there is none, because this is a site-specific issue for lanl.gov. Worse, it has pretty aggressive filtering and will not render script tags, HTML tags, and requires the http:// element it seems.
So this is a site specific issue, with no real value or merit, and doesn't apply to anyone else in the world?
: Rootktit Pentester. Really? _______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/
Current thread:
- weblogin software cross site request Juan Martinez (Jul 17)
- <Possible follow-ups>
- Re: weblogin software cross site request jericho (Jul 18)