MobileRead Forums
Register Guidelines E-Books Search Today's Posts Mark Forums Read

Go Back   MobileRead Forums > Miscellaneous > Lounge

Welcome to the MobileRead Forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community today, you will have fewer ads, access to post topics, communicate privately with other members, respond to polls, upload content and access many other special features.

If you have any problems with the registration process or your account login, please contact us.

Hint: Don't have time to visit us daily? Subscribe to our main RSS feed to receive our frontpage posts at your convenience.

Notices

Lounge Friendly banter and discussions unrelated to e-books

Reply
 
Thread Tools Search this Thread Display Modes
Old 07-18-2005, 08:51 PM   #1
Alexander Turcic
Fully Converged
Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.
 
Alexander Turcic's Avatar
 
Posts: 12,179
Karma: 68037
Join Date: Oct 2002
Location: Switzerland
Device: Sony Portable Reader
Serious exploit in Greasemonkey 0.4

If you are using the wonderful Greasemonkey extension for Firefox, better disable it ASAP and then check out this link:

In other words, running a Greasemonkey script on a site can expose the
contents of every file on your local hard drive to that site. Running
a Greasemonkey script with "@include *" (which, BTW, is the default if
no parameter is specified) can expose the contents of every file on
your local hard drive to every site you visit. And, because
GM_xmlhttpRequest can use POST as well as GET, an attacker can quietly
send this information anywhere in the world.
__________________
Follow MR on Twitter
Alexander Turcic is offline   Reply With Quote
Old 07-19-2005, 02:46 AM   #2
Chaos
Evangelist
Chaos has a complete set of Star Wars action figures.Chaos has a complete set of Star Wars action figures.Chaos has a complete set of Star Wars action figures.
 
Posts: 418
Karma: 281
Join Date: Jul 2004
Location: Canada
Device: Assorted older devices
0.4? The greasemonkey website you linked to lists the most recent version at 0.3.3. Did they pull 0.4 when this vulnerability was found?
Chaos is offline   Reply With Quote
Old 07-19-2005, 05:59 AM   #3
Alexander Turcic
Fully Converged
Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.Alexander Turcic can talk to the animals.
 
Alexander Turcic's Avatar
 
Posts: 12,179
Karma: 68037
Join Date: Oct 2002
Location: Switzerland
Device: Sony Portable Reader
0.4 is out as beta.

http://cyclingroo.blogspot.com/2005/...y-04-beta.html
__________________
Follow MR on Twitter
Alexander Turcic is offline   Reply With Quote
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
PalmOne not serious about growth market China? Colin Dunstan Handhelds and Smartphones 4 08-24-2009 12:12 PM
Serious Bugs in T5 Software Bob Russell Handhelds and Smartphones 9 10-27-2004 01:47 AM
HandStory and Tungsten T3: serious problem with categories BasilC Reading Software 6 09-04-2004 03:49 PM


All times are GMT -4. The time now is 10:41 AM.


MobileRead.com is a privately owned, operated and funded community.