Quoting Robert Hanson <[EMAIL PROTECTED]>:

> One of the interesting aspects is that I could use
>
> JMOLJAR=
> http://chemapps.stolaf.edu/jmol/docs/examples-11/JmolAppletSigned.jar
>
> for example to go to the PDB website and use MY applet instead of theirs.
>

Bob,
have you tried that already?
If this is allowed it would be exactly what should pe prevented within  
Jmol.js!
It should only be allowed to load a different Jmol version from the  
same server!

Otherwise anyone could use your/our service by 'URL Spoofing' to  
deliver an "evil" Jmol applet (or even a totally different applet) to  
the user!!!

Regards,
Rolf



----------------------------------------------------------------
This message was sent using IMP, the Internet Messaging Program.


-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Jmol-users mailing list
Jmol-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/jmol-users

Reply via email to