Follow Slashdot blog updates by subscribing to our blog RSS feed

 



Forgot your password?
typodupeerror

Submission Summary: 0 pending, 34 declined, 4 accepted (38 total, 10.53% accepted)

×
Security

Submission + - MIME sniffing vulnerability in Internet Explorer

Lars T. writes: "Heise reports that IE's MIME sniffing feature, intended to provide security against falsely identified file types (e.g. download and automatic execution of .hta files) can backfire and allow the execution of HTML and JavaScript from within images that are called directly via their URL. This especially becomes a problem for sites that allow users to upload images."

Slashdot Top Deals

"What if" is a trademark of Hewlett Packard, so stop using it in your sentences without permission, or risk being sued.

Working...