Re: Re: Safari for windows remote arbitry file upload

看板Bugtraq作者時間18年前 (2007/08/17 23:49), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串3/4 (看更多)
"Firefox will do the same if it's configured that.Is this the default behavior with Safari?" yes it's a default setting . "I don't see that this is a bug. Could you explain a little more fully?" well configured like this by default,it's a security hole . it's a perfect hole for a virus, trojan, etc. you can send any malicous files to a remote desktop via a malicious website or even a XSS , like an executable with a "my computer" icon ( for exemple .. )
文章代碼(AID): #16nSEU00 (Bugtraq)
文章代碼(AID): #16nSEU00 (Bugtraq)