Re: Facebook Url Redirection Vuln.

看板Bugtraq作者時間12年前 (2013/07/12 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串3/3 (看更多)
--lc9FT7cWel8HagAv Content-Type: text/plain; charset=us-ascii Content-Disposition: inline On Thu, Jul 11, 2013 at 04:35:21PM +0200, Anthony Dubuissez wrote: > Isn't it a MitM situation ? if you can intercept that value you can intercept more than a simple parameter no ? If you're the target site of the original link, you just need to look at the referrer. Stupid referrers. --lc9FT7cWel8HagAv Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBAgAGBQJR3td8AAoJEGhmizV0f2d1XTYP/j85HQ9hx5szYqXoI14K7PzF rdfcxWsjg6hhOutWxLzMFF+JzoZat5B6KYvHz/c7VTpA6pmOkfZuroOiVdfEkx+y NBuu/8CMEAE+4h08t/gShRh7VdKCoXQZ1MsSp2rrP8HytIfCprYjDmpVkTNEOL2s Pyc6uwM4nV/IJAAiaSTwnK61+XKhublX+x60prmv8pyrTQoaWr1LsAq9DLhZoXhw G/EGE7rMKvL2H7nUKDISivgGtle4iWMYnt2v2sbaR1u3c8NYWdaSF24U6lW03+Be Ws4TlqDSUg9RFQvk3CQU+QDqyvL+DUim0AsuEIfB/0xNZu/TTSyrWlQ7N6PjMXfk sh8l5FPkwAkLt3qnx4DlCaTewh5piJ+SkYYikp6ZPiAonx4E4I/22/LS7Z8MoRGa QBI701AwvrOsfSP9ikpTAUZ+PhP6VmbmWHptlDhrMoLfjvYLv4EZkZS94oZ3KUUW 4LqKUcsVjgn99/dDcd9P2VKyfTyu8FweO9ltzmO5WuUk6DA/X/X9cDC/BacqEf2+ ddPiJk+8FId2sdkQDQgtvV4kHdR1MO8z5Zt/DOyZ65LVvDoIvBIRNdVEbrl4ocIJ sGPKLKGbHcE8aN3B8n+bitYFh85okaumvTzG7miPsz7gVLkK1ldWvt+7pPISUbPD 1XDDLLwTRAgdVWrAsnov =1y7S -----END PGP SIGNATURE----- --lc9FT7cWel8HagAv--
文章代碼(AID): #1HtlBVkI (Bugtraq)
文章代碼(AID): #1HtlBVkI (Bugtraq)