Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Attack Technique: File Download Injection Apr 07 2008 07:22PM
Jeff Williams (jeff williams aspectsecurity com)
File Download Injection
=======================

Affects most web application platforms, including Java, .NET, PHP, Cold
Fusion.

This attack involves the use of header injection, particularly the
Content-Disposition header, to subvert HTTP responses from trusted
domains. Attackers can use this tech...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus