thttpd : Cross Site Scripting.

From: frog frog (leseulfrogat_private)
Date: Sat Mar 02 2002 - 03:00:41 PST

  • Next message: Arta: "Re: Strange behaviour in Win2k"

    
     ('binary' encoding is not supported, stored as-is)
    http://THTTPDHOST/<script>;[ANYSCRIPT]&lt;/script&gt;
    
    Version :  thttpd/2.20b 10oct00 and maybe others...
    http://www.acme.com/software/thttpd/
    
    If anyone know another version who's vulnerable, 
    mail me please...
    
    Sorry for my bad english.
    frog-m@n
    



    This archive was generated by hypermail 2b30 : Tue Mar 05 2002 - 01:43:12 PST