Page 1 of 1

Getting Cross Site Scripting error when using ebay...

Posted: Mon Aug 30, 2010 7:03 pm
by Diffie
Hi,
I am attempting to use an ebay app called Outright, but I am receiving a cross site scripting block when I attempt use it. Attempting to allow the reload does nothing to remove the block. Here are the messages from the Error log.

"[NoScript XSS] Sanitized suspicious upload to [https://secure.outright.com/selling_man ... B0Pg%3D%3D] from [http://usbbo2evopsf3s637jm325m88c9b5g39 ... =535865753]: transformed into a download-only GET request."

secure.outright.com : server does not support RFC 5746, see CVE-2009-3555i

Thanks in advance for your assistance.

Lon
"Diffie"

Re: Getting Cross Site Scripting error when using ebay...

Posted: Mon Aug 30, 2010 8:14 pm
by Giorgio Maone
Diffie wrote:Attempting to allow the reload does nothing to remove the block.
Do you mean that "Unsafe reload" doesn't work?

At any rate, you can work-around by adding the following line to your NoScript Options|Advanced|XSS exceptions box:

Code: Select all

^https://secure\.outright\.com/selling_manager/init_session