[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Re: Re: Apache Server HTML Injection and UTF-7 XSS Vulnerability
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Re: Re: Re: Apache Server HTML Injection and UTF-7 XSS Vulnerability
- From: cxib@xxxxxxxxxxxxxxxxxx
- Date: 12 May 2008 19:31:00 -0000
It is not apache issue. You recrive 403 status, so charset is set in Header.
Charset should not be in meta tags. Issue exist, when apache send response
without charset in header AND meta tags. Probably you are using old browser
without standard settings.
Best Regards,
Maksymilian Arciemowicz
securityreason.com