hellekin <[email protected]> writes: > On 06/24/2013 10:51 AM, Bruno Félix Rezende Ribeiro wrote: >> >> If I try to open the given URL with a null browser's user agent >> string or if I drop the `User-Agent' HTTP header I receive an error >> page saying: >> >> Forbidden >> > *** Is Mediawiki using the User-Agent to avoid session fixation attacks? > > Did you try using a fake UA and sticking with it?
Actually it works with a fake UA like "unknown". Thanks for the tip!
--
,= ,-_-. =. Bruno Félix Rezende Ribeiro (oitofelix) [0x28D618AF]
((_/)o o(\_)) There is no system but GNU;
`-'(. .)`-' Linux-libre is just one of its kernels;
\_/ All software should be free as in freedom;
pgprCjIp4eQrN.pgp
Description: PGP signature
