[41360] in bugtraq

home help back first fref pref prev next nref lref last post

Re: XSS on Yahoo Mail

daemon@ATHENA.MIT.EDU (alireza hassani)
Sat Nov 26 14:58:17 2005

Message-ID: <20051126180037.73924.qmail@web51009.mail.yahoo.com>
Date: Sat, 26 Nov 2005 10:00:37 -0800 (PST)
From: alireza hassani <trueend5@yahoo.com>
To: bugtraq@securityfocus.com
MIME-Version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 8bit

--- Will Wesley <willwesleyccna@yahoo.de> wrote:
>Anyway, a solution is really quite simple.
>Allow users to disable HTML in their email, or why
not by >default? 

Don't you think this is not a real solution?
User must be safe to use any option and also full
performances.

Alireza Hassani (http://www.kapda.ir)



		
__________________________________ 
Yahoo! Music Unlimited 
Access over 1 million songs. Try it free. 
http://music.yahoo.com/unlimited/

home help back first fref pref prev next nref lref last post