Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
RE: CSS before redirect Sep 09 2003 09:09AM
Thomas Schreiber (ts secure-net de)
There is a security risk, under some circumstances: it exists a second
vulnerability and the client is Mozilla or Firebird (tested with latest
version). IE latest version and Opera do not seem vulnerable, others not
tested.

The additional hole needed often exists if the redirect is not done by the
...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus