Menu

#5 Initialization security issue

open
nobody
None
5
2009-08-03
2009-08-03
No

For server validation to work, it is necessary invoke JSP at least once before submiting. An attacker could invoke action URL directly before JSP initialization, bypassing server validation.

Discussion


Log in to post a comment.