Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: Re: Sourceforge.net XSS

Re: Sourceforge.net XSS

From: <v9_at_fakehalo.us>
Date: 12 Apr 2006 20:29:32 -0000
('binary' encoding is not supported, stored as-is) Is it me, or do these XSS vulnerabilies not really count? I don't see a way this can be abused other than to yourself. In my book a XSS vulnerability must be stored on the server and displayed for others to view, otherwise whats the point? If i'm not getting the big picture, someone inform me...I don't mean to flame on you specifically, but I have seen alot of these "XSS in the URL" dealios lately.
Received on Apr 12 2006
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos