Re: Facebook Url Redirection Vuln.

From: Jann Horn <jann+libev@thejh.net>
To: Anthony Dubuissez <anthony.dubuissez@webera.fr>
Cc: bugtraq@securityfocus.com <bugtraq@securityfocus.com>
Subject: Re: Facebook Url Redirection Vuln.
Date:


On Thu, Jul 11, 2013 at 04:35:21PM +0200, Anthony Dubuissez wrote:
> Isn't it a MitM situation ? if you can intercept that value you can intercept more than a simple parameter no ?

If you're the target site of the original link, you just need to look at the referrer. Stupid referrers.




Copyright © 1995-2019 LinuxRocket.net. All rights reserved.