MLive's profile system has no XSS protection. HTML of any sort can be entered in the About Me field.
http://connect.mlive.com/user/XSSBlog/index.html
Monday, November 2, 2009
Subscribe to:
Post Comments (Atom)
And Other Web Related Deception
No comments:
Post a Comment