Ouch!  Corporate drones everywhere will have one more reason to never leave the 
intra net.  Now every link can be PORN that gets you fired.  It's in your email 
too!  Don't think for one second that you can install Mozilla in cubicle land, 
the idiots think that's a security risk.  Droooooooollllll.

On 2003.12.09 18:45 John Hebert wrote:
> This one's a doozy. By including a 0x01 character ("%01") in a URL in 
> IE, that character and the rest of the URL does _not_ display in the 
> address box.
> 
> In IE:
> http://www.microsoft.com
> 
> the same page in Mozilla:
> http://[EMAIL PROTECTED]/security/ex01/vun2.htm
> 
> 
> To test the exploit, compare IE and any other browser at the URL:
> http://www.zapthedingbat.com/security/ex01/vun1.htm
> 
> -- 
> John Hebert
> System Engineer
> I T Group, Inc.
> 225-922-4535
> 

Reply via email to