PDA

View Full Version : Apache mod_negotiation XSS and Http Response Splitting



newsbot
13-02-2008, 07:16 PM
Content negotiation, or more accurately content selection, is the selection of the document that best matches the clients capabilities, from one of several available documents. There are two implementations of this.ย * A type map (a file with the handler type-map) which explicitly lists the files containing the variants.

http://www.securiteam.com/unixfocus/5RP0J0UNGG.html