1 Reply Latest reply on Jun 2, 2003 11:32 PM by greno

    Cross-site scripting in nukes

    dmeany

      Editing an html page seems to allow cross-site scripting and webdot code similar to:
      alert("cookie:"+document.cookie);

        • 1. Re: Cross-site scripting in nukes
          greno

          If I found an employee inserting cross-site scripting into their content they wouldn't have a job for very long. Additionally, their content must be reviewed/approved before publishing.