[sldev] MAJOR/CRITICAL exploit for webbrowsers and SL? (Lawson English)

Lawson English lenglish5 at cox.net
Tue Sep 18 10:45:31 PDT 2007


Argent Stonecutter wrote:
> This exploit only works on Windows. On UNIX the calling application 
> (shell, etc) splits the command line up into words, so the quoting 
> exploit would not work unless the calling application is stupendously 
> stupid and passes the input unfiltered to a shell (in which case there 
> are many juicier exploits to be found).
>
> _______________________________________________
> Click here to unsubscribe or manage your list subscription:
> /index.html
>

Happy to learn this.


More information about the SLDev mailing list