Re: Preventing cross site scripting- Original Message -----
From: "Bob Lee" <crazybob@crazybob.org>
To: <webappsec@securityfocus.com>
Sent: Thursday, June 19, 2003 7:19 PM
Subject: Re: Preventing cross site scripting
> You can also embed javascript in seemingly harmless tags such as "img"
if you blindly accept whatever is passed, yes. However, don't, and it's not
an issue. :-)
--
Regards,
Tim Greer chatmaster@charter.net
Server administration, security, programming, consulting.
Received on Thu Jun 19 23:21:03 2003
This archive was generated by hypermail 2.1.8
: Wed Aug 23 2006 - 14:07:52 EDT
|