[thelist] someone else's cookies?
Liz Lawson
lizlawson at charitycards.co.uk
Mon Nov 13 04:37:05 CST 2000
woah!
:-0
I'd given up on getting an answer to this one...Oliver, many thanks for your
information!
all the best
Liz
>i discovered this security hole a couple of years ago, and reported it
here:
>http://homepages.paradise.net.nz/~glineham/cookiemonster.html
>it is also on the "bugtraq" archives.
>
>the security hole was confirmed by the microsoft security team / ie
>development team, and also by netscape.
>
>
>summary: if you're on a ccTLD (like .nz or .uk), you can expect to be sent
>other people's cookies.
>
>
>if anyone's confused or want more information, i'm happy to explain
further.
>
></ol>
More information about the thelist
mailing list