Fedora Security and the Uverse 3800HGV-B router

Reindl Harald h.reindl at thelounge.net
Sun Jul 3 00:27:02 UTC 2011


Am 03.07.2011 02:23, schrieb JD:

> When I disabled javascript, the the link in the
> router's page could no longer open
> file:///

oh what a wonder

> I am not saying that THAT script in itself is a terrible
> threat.  There are far more sophisticated javascripts
> than just displaying your files in the browser

yesus christ where is the problem that your browser can access your files?
as long there are no capabilities that javascript from a website can access
local files, upload them without user-restrictions or access cookies
of foreign domains where is your fucking problem?


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 261 bytes
Desc: OpenPGP digital signature
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20110703/a8cf646a/attachment.bin 


More information about the users mailing list