then whoever owns that page gains the ability to run arbitrary scripts in your own domain's browser context
maybe, if the browser is configured to allow this
In reply to Re^2: CGI::Ajax. Getting content of second.html file to resultant div of one.pl (same/cross domain)
by Anonymous Monk
in thread CGI::Ajax. Getting content of second.html file to resultant div of one.pl (same/cross domain)
by msinfo
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |