|
2a3914ab382405f8ea3813a45da422a9
|
XSS Vulnerabilityby Ryan Alyea - Member - 01:41AM, Jul 01, 2008 |
|
My colleague found a simple XSS vulnerability in the 404 URL. |
|
|
There are still data output corruption bugs in some “Not found” search pages. While there does appear to be some degree of filtering by heuristics, that cover a wide range of possible exploit vectors, it is generally unwise to delay fixing the underlying bug.
|
MeowMeow
Member
03:18PM, Aug 23, 2008