Mozilla XMLSerializer Same Origin...

- AV AC AU C I A
发布: 2002-05-28
修订: 2025-04-13

XMLSerializer is part of the XMLExtras package included with Mozilla. It is available for Unix, Linux, and Microsoft Windows platforms. The XMLSerializer object does not possess a check for the Same Origin Policy. This may allow the object to be invoked to gain access to properties of another domain in a frame or iframe.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息