[Full-disclosure] Adium <= 1.4.2 HTML/Javascript, XSS advisory



hello,

bzzzt, lolday:
http://www.noptrix.net/advisories/adium_inject.txt - next bug is coming
(off-by-one)

/* no comment */


cheers,
noptrix

--
Name: Levent 'noptrix' Kayan
E-Mail: noptrix@xxxxxxxxxxxxxxx
GPG key: 0x014652c0
Key fingerprint: ABEF 4B4B 5D93 32B8 D423 A623 823D 4162 0146 52C0
Homepage: http://www.noptrix.net/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



Relevant Pages