NVU the WYSIWYG HTML for linux

Fraser Campbell fraser-Txk5XLRqZ6CsTnJN9+BGXg at public.gmane.org
Thu Oct 30 17:27:01 UTC 2003


On Thursday 30 October 2003 11:44, JoeHill wrote:

> Yeah, since with PHP the processing is done on the server, there are
> security issues involved. Would this be one of those openings for a
> "cross-site-scripting" attack,  or is that only with forms?

Almost certainly.  You'd want to really trust that remote file you're 
including.  I don't know the definition of cross-site-scripting attacks  
although I've tried to read about it on occassion.

-- 
Fraser Campbell <fraser-Txk5XLRqZ6CsTnJN9+BGXg at public.gmane.org>                 http://www.wehave.net/
Halton Hills, Ontario, Canada                             Debian GNU/Linux

--
The Toronto Linux Users Group.      Meetings: http://tlug.ss.org
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://tlug.ss.org/subscribe.shtml





More information about the Legacy mailing list