Security flaws in JavaScrip

Authors:

  • Andersson Christer

Publish date: 2001-01-01

Report number: FOI-R--0124--SE

Pages: 113

Written in: Swedish

Abstract

This report studies security aspects when executing interpreted mobile scripts in a user´s web browser. The programming language JavaScript and the web browsers Netscape Navigator and Internet Explorer are studied thoroughly. The report describes what risks a user is exposed to and how a user can protect himself All security flaws are classified on the basis of the damage they could cause. In parallel with this report a website has been constructed where many of the security flaws described in the report are demonstrated.