Re: RE: [Full-disclosure] XSS in Oracle default fcgi-bin/echo
Dear An,
> Referrer: <script>alert(1)</script>
Yes, but... seems not all echo's get a Referer passed to them.
Cheers, Paul
Paul Szabo psz@maths.usyd.edu.au http://www.maths.usyd.edu.au/u/psz/
School of Mathematics and Statistics University of Sydney Australia
討論串 (同標題文章)
完整討論串 (本文為第 6 之 6 篇):