BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: [Full-disclosure] Konqueror: URL address barspoofingvulnerabilities Aug 06 2007 11:33PM
Jonathan Smith (smithj rpath com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Jonathan Smith wrote:
> Robert Swiecki wrote:
> > The second one is based on the http URI scheme which allows embedding
>> user/password parameters into it, i.e. http://user:password (at) domain (dot) com. [email concealed]
>> Such parameters can contain whitespaces, so the attack...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus