Searched hist:"66 b23ce9f134c838f393fa452c450f8b6fc147c3" (Results 1 – 1 of 1) sorted by relevance
| /dokuwiki/inc/ |
| H A D | actions.php | 66b23ce9f134c838f393fa452c450f8b6fc147c3 Tue Sep 29 18:28:32 UTC 2009 Andreas Gohr <andi@splitbrain.org> Send export_raw as attachement to avoid IE's content sniffing [security]
Ignore-this: 9b6ef0179df729d4bc41c2d746965134 With MSIE's content-sniffing [1], the export_raw mode could be used for XSS attacks against MSIE users. Sending the export as a download circumvents that.
[1] http://www.splitbrain.org/blog/2007-02/12-internet_explorer_facilitates_cross_site_scripting
darcs-hash:20090929182832-7ad00-085deb3fa8cc939b55cd293a8f4780b4b170d2e6.gz
|