|
-
August 7th, 2002, 11:58 AM
#1
Mozilla FTP View Cross-Site Scripting Vulnerability
Source: Advisory
Mozilla allows running Malicious Scripts due to a bug in 'FTP view' feature.
If you click on a malicious link, the script embedded in URL will run.
* If the ftp server and the http server are the same address, it is dangerous.
Because the cookie may be modified by the attacker.
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|