[41354] in bugtraq
Re: XSS on Yahoo Mail
daemon@ATHENA.MIT.EDU (little.hacker@gmail.com)
Sat Nov 26 09:23:04 2005
Date: 24 Nov 2005 12:48:26 -0000
Message-ID: <20051124124826.3405.qmail@securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: little.hacker@gmail.com
To: bugtraq@securityfocus.com
yea there is bug but it seems url doesn't work correctly.
see this http://littlehacker.persiangig.com/image/y-XSS.JPG
it will redirect to mail's first page