|
|
| |
| Caramail, a French web-based e-mail service, contains a vulnerability that allows attackers launch a CSS (Cross Site Scripting) attack. This in turn would allow them to send victims a special URL that will show information as if it were coming from the website. |
| |
Credit:
The information has been provided by frog frog.
|
| |
Example:
http://www45.caramail.com/general.jsp?ERROR=<script>alert('hum...')</script>
|
|
|
|
|
|
|
|