[sldev] MAJOR/CRITICAL exploit for webbrowsers and SL? (Lawson
English)
Lawson English
lenglish5 at cox.net
Tue Sep 18 10:45:31 PDT 2007
Argent Stonecutter wrote:
> This exploit only works on Windows. On UNIX the calling application
> (shell, etc) splits the command line up into words, so the quoting
> exploit would not work unless the calling application is stupendously
> stupid and passes the input unfiltered to a shell (in which case there
> are many juicier exploits to be found).
>
> _______________________________________________
> Click here to unsubscribe or manage your list subscription:
> /index.html
>
Happy to learn this.
More information about the SLDev
mailing list