[Building Sakai] XSS

Steve Swinsburg steve.swinsburg at gmail.com
Sun Aug 15 16:12:53 PDT 2010


Hi Warwick,

You can take them out, they ship with Tomcat by default. You don't need any of the default webapps that ship with Tomcat (except ROOT and even then just  HTML redirect or do it with Apache).

cheers,
Steve


On 16/08/2010, at 9:00 AM, Warwick Chapman wrote:

> Hi All
> 
> Nessus tells me the servlets in /jsp-examples may be vulnerable to XSS exploits.  Does anyone know why these are there and if they can be safely removed?
> 
> -- Warwick Bruce Chapman | +27 83 7797 094 | http://warwickchapman.com
> _______________________________________________
> sakai-dev mailing list
> sakai-dev at collab.sakaiproject.org
> http://collab.sakaiproject.org/mailman/listinfo/sakai-dev
> 
> TO UNSUBSCRIBE: send email to sakai-dev-unsubscribe at collab.sakaiproject.org with a subject of "unsubscribe"

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://collab.sakaiproject.org/pipermail/sakai-dev/attachments/20100816/737e3f24/attachment.html 


More information about the sakai-dev mailing list