Re: Whoooooaaaaa, that's a whois!

From: bill@daze.net
Date: Tue Nov 12 2002 - 14:38:11 EST


> <script>window.open('http://taky.com/?d=zohcom');</script>
>
> Use a CGI or something similar, output this data into an HTML page, and
> you get a popup window! Very clever... talk about cross-site scripting,
> that is.
>
> Okay, that's gonna be a s/[<>]/ /g;

All that you really need to do is replace < with &lt;



This archive was generated by hypermail 2.1.3 : Tue Oct 19 2004 - 23:37:31 EDT