Together with the server-side stripslash() php function this call slips through the IE8 XSS filters because it strips the slashes server side and such evades IE8 detection when the HTTP request is being sent by IE8:
See: http://www.0x000000.com/?i=634
Microsoft Plugs Nearly 400 Security Holes
-
Microsoft today released updates to remedy at least 398 security
vulnerabilities in its Windows operating systems and supported software,
including one wea...
7 hours ago


0 comments
Post a Comment