Flash does not strictly honor the same-origin policy. As a result, if an attacker is able to upload a malicious flash file to portal, the flash file can be used to circumvent the portal's CSRF protection.
- Assignee:
-
Samuel Kong
- Reporter:
-
Samuel Kong
- Participants of an Issue:
- Recent user:
- Esther Sanz
- Votes:
-
0 Vote for this issue
- Watchers:
-
0 Start watching this issue