FUDforum
Fast Uncompromising Discussions. FUDforum will get your users talking.

Home » FUDforum » FUDforum Suggestions » Avatars and URL control
Show: Today's Messages :: Polls :: Message Navigator
Return to the default flat view Create a new topic Submit Reply
Re: Avatars and URL control [message #35868 is a reply to message #35861] Sun, 18 February 2007 16:58 Go to previous message
Ilia is currently offline  Ilia   Canada
Messages: 13241
Registered: January 2002
Karma:
Senior Member
Administrator
Core Developer
There is possibility of someone injecting XSS onto a trusted domain allowing them to then inject JS code via avatars into forum page potentially leading to session take over.

FUDforum Core Developer
[Message index]
 
Read Message
Read Message
Read Message
Read Message
Previous Topic: Any plans for spam protection?
Next Topic: Update "Upgrade Documentation"
Goto Forum:
  

-=] Back to Top [=-
[ Syndicate this forum (XML) ] [ RSS ]

Current Time: Sun Nov 03 10:14:33 GMT 2024

Total time taken to generate the page: 0.04019 seconds