Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 3 Oct 2000 21:50:44 +0200
From:      Wolfram Schneider <bsd@panke.de.freebsd.org>
To:        Dan Rench <drench@i-works.com>
Cc:        www@FreeBSD.ORG
Subject:   Re: Lack of HTML escaping in your 404 document (CSS vulnerablility)
Message-ID:  <20001003215044.A4097@paula.panke.de.freebsd.org>
In-Reply-To: <Pine.BSF.4.21.0009261701220.17637-100000@matt.i-2.com>; from drench@i-works.com on Tue, Sep 26, 2000 at 05:03:17PM -0500
References:  <Pine.BSF.4.21.0009261701220.17637-100000@matt.i-2.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Fixed, thanks!!!

-Wolfram

On 2000-09-26 17:03:17 -0500, Dan Rench wrote:
> Try:
> 
> http://www.freebsd.org/<script>confirm('hello');</script>;
-- 
Wolfram Schneider <wosch@freebsd.org> http://wolfram.schneider.org


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-www" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001003215044.A4097>