[thelist] someone else's cookies?

Liz Lawson lizlawson at charitycards.co.uk
Mon Nov 13 04:37:05 CST 2000


woah!

:-0

I'd given up on getting an answer to this one...Oliver, many thanks for your
information!


all the best

Liz


>i discovered this security hole a couple of years ago, and reported it
here:
>http://homepages.paradise.net.nz/~glineham/cookiemonster.html
>it is also on the "bugtraq" archives.
>
>the security hole was confirmed by the microsoft security team / ie
>development team, and also by netscape.
>
>
>summary: if you're on a ccTLD (like .nz or .uk), you can expect to be sent
>other people's cookies.
>
>
>if anyone's confused or want more information, i'm happy to explain
further.
>
></ol>







More information about the thelist mailing list