Re: OpenBSD XSS ;)

2007-10-10 Thread Constantine A. Murenin
On 10/10/2007, Anton Karpov <[EMAIL PROTECTED]> wrote: > 2007/10/10, Can Erkin Acar <[EMAIL PROTECTED]>: > > > > Anton Karpov <[EMAIL PROTECTED]> wrote: > > > > > > In this case, if you have some web application on the same > > *domain name* then the XSS can be used to take control of the > > user

Re: OpenBSD XSS ;)

2007-10-10 Thread Anton Karpov
2007/10/10, Can Erkin Acar <[EMAIL PROTECTED]>: > > Anton Karpov <[EMAIL PROTECTED]> wrote: > > > In this case, if you have some web application on the same > *domain name* then the XSS can be used to take control of the > user session on the application. Especially fun for isp/hosting > kind of se

Re: OpenBSD XSS ;)

2007-10-10 Thread Can Erkin Acar
Anton Karpov <[EMAIL PROTECTED]> wrote: > 2007/10/10, Stuart Henderson <[EMAIL PROTECTED]>: >> >> On 2007/10/10 20:43, [EMAIL PROTECTED] wrote: >> > Nice to hide your local network IP ;) >> > Do not show it anyone! >> > >> > On 10/10/07, Anton Karpov <[EMAIL PROTECTED]> wrote: >> > > It's a kind of

Re: OpenBSD XSS ;)

2007-10-10 Thread Anton Karpov
2007/10/10, Stuart Henderson <[EMAIL PROTECTED]>: > > On 2007/10/10 20:43, [EMAIL PROTECTED] wrote: > > Nice to hide your local network IP ;) > > Do not show it anyone! > > > > On 10/10/07, Anton Karpov <[EMAIL PROTECTED]> wrote: > > > It's a kind of useless and funny XSS... in OpenBSD ;) > > Well,

Re: OpenBSD XSS ;)

2007-10-10 Thread Stuart Henderson
On 2007/10/10 20:43, [EMAIL PROTECTED] wrote: > Nice to hide your local network IP ;) > Do not show it anyone! > > On 10/10/07, Anton Karpov <[EMAIL PROTECTED]> wrote: > > It's a kind of useless and funny XSS... in OpenBSD ;) Well, it's fixed in -current. There are better ways to report a bug tha

Re: OpenBSD XSS ;)

2007-10-10 Thread yakov . zaytsev
Nice to hide your local network IP ;) Do not show it anyone! On 10/10/07, Anton Karpov <[EMAIL PROTECTED]> wrote: > It's a kind of useless and funny XSS... in OpenBSD ;) > > http://www.toxahost.ru/images/funny/obsd_xss.JPG

OpenBSD XSS ;)

2007-10-10 Thread Anton Karpov
It's a kind of useless and funny XSS... in OpenBSD ;) http://www.toxahost.ru/images/funny/obsd_xss.JPG