[Full-disclosure] XSS vulnerability at Symantec.com #2

Pigrelax Pigrelax at yandex.ru
Fri Aug 4 18:05:51 BST 2006


>ok, but want do you want to do with a stolen session on symantec ? get 
>free AV ?

Are you really known that it can be used only for stolen session?

XSS may use for fishing, farming, XSS proxy and other..

Can we trust security company, which can not protect your corporate Web site?





Full-Disclosure is hosted and sponsored by Secunia.