Security flaws in JavaScrip
Publish date: 2001-01-01
Report number: FOI-R--0124--SE
Pages: 113
Written in: Swedish
Abstract
This report studies security aspects when executing interpreted mobile scripts in a user´s web browser. The programming language JavaScript and the web browsers Netscape Navigator and Internet Explorer are studied thoroughly. The report describes what risks a user is exposed to and how a user can protect himself All security flaws are classified on the basis of the damage they could cause. In parallel with this report a website has been constructed where many of the security flaws described in the report are demonstrated.