Hosting generously provided by
www.mv.com





Pick Your Language


01/09/07 Rogue XML Specifications
Aditya K Sood Writes "This article solely relates to the the insecurities that remain in the XML schema defined for any web server that relates to peculiar web servicing application.This is actually based on the AJAX framework as the xml specifcation act as an interface to server objects.The interface which is being provided by the xml schemadirectly configures the server on the fly which is dependent on the specific service providing servelet.The wrong schema in the web.xml or the index.xml provide leads to the origin of the web attack base that reallydisrupts the functioning of the server which further results in leveraging information.I am going to discuss theschema designing and relative effects if it is not configured properly.

The article has been released on the packetstorm security."

Link to this Story: 01/09/07 Rogue XML Specifications
Article Link: http://www.packetstormsecurity.org/papers/general/RogueXMLSpecific.pdf
Link: Have a Site Suggestion, Material Request, or News? Submit it!
News RSS Feed: Web Security news RSS Feed

     



External Links:
Copyright 2000-2007 Cgisecurity.com.
Providing Web Security news since 2000.
Information contained on this website may not be copied without explicit permission.
Best Viewed with Netscape.
Website Security Web Application Security solid state drives ebay cd players camera lens deals buy macbook air not work safe software security canon camera deals


Popular Links By Subject

Sponsored Link (Advertise)


Subscribe to CGISecurity.com



The Web Security Mailing List
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • [WEB SECURITY] Token Kidnapping Win2k3 PoC exploit
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • Re: [WEB SECURITY] NiktoFE, WFuzzFE
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • Re: [WEB SECURITY] Web Hacking Firefox Add-ons Bundled
  • Re: [WEB SECURITY] Interview With Jeremiah Grossman on ClickJacking attack

  • Contact us
    Post News, get linkage!

    Name

    Email or Homepage:

    Subject

    Finish the word below: deadb33f

    Body