Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Re: Re: Re: Apache Server HTML Injection and UTF-7 XSSVulnerability May 17 2008 10:55PM
Tim (tim-security sentinelchicken org)

Hello Yossi,

I've read your previous messages and I'm not convinced.

> I think that you didn't understand this vulnerability properly. I ask
> to to check again and run this exploit with Firefox. After running this
> exploit, change manually the ecnoding in Firefox to UTF-7.. You will see
> that ...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus