>Another option is XSS. If you have some XSS vulnerability, than what you
>would want to steal from other users are these filenames.
>
>
How would you do this? I think that might be possible only if links are
hardcoded in the webpage, as in the case of URL rewriting.
Greetings.
-------------------------------
Rafael San Miguel Carrasco
Consultor Técnico - Jefe de Proyecto
rafael.sanmiguel_at_dvc.es
+ 34 660 856 647
+ 34 902 464 546
Davinci Consulting - www.dvc.es
Oficina Madrid - Parque empresarial Alvento
Via de los Poblados 1 Edificio A 6ª planta
28033 Madrid
-------------------------------
Received on Jan 10 2005