The Cross Site Scripting FAQ06/06/2002 06:01 AM Websites today are more complex than ever, containing a lot of dynamic
content making the
experience for the user more enjoyable. Dynamic content is achieved
through the use of web
applications which can deliver different output to a user depending on
their settings and needs.
Dynamic websites have a threat that static websites don't, called
"Cross Site Scripting" (or XSS
dubbed by other security professionals). Currently small informational
tidbits about Cross Site
Scripting holes exist but none really explain them to an average
person or administrator. This
FAQ was written to provide a better understanding of this emerging
threat, and to give guidance
on detection and prevention.
DevShed: A Quick Look at Cross Site Scripting01/04/2005 11:24 AM Something that's becoming more and more of an issue with the web today
is a scary little thing called "cross-site scripting". It is an,
unfortunately, all too simple way for someone to figure out how to
bypass certain restrictions on your site. Fortunately, DevShed has a new article that covers this topic and provides some
helpful hints on how to protect you and your data.
WebcamXP v1.06.945 Cross Site Scripting Vulnerabillity
Multiple Cross Site Scripting Vulnerabilities in eGroupWare
Multiple Cross Site Scripting Vulnerabilities in eGroupWare08/23/2004 12:19 PM Joxean Koret (Aug 21 2004) Grok Description matches for Cross Site Scripting DOS (Zyxel B-420 Ethernet Bridge) GrokA matches for Cross Site Scripting DOS (Zyxel B-420 Ethernet Bridge)
Cross Site Scripting DOS (Zyxel B-420 Ethernet Bridge)
The following phrases have been identified by the grok system as matching this entry: