-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Here's a whitepaper on this issue, called HTTP Response Splitting, in case you're interested in the backgrounds.
http://www.packetstormsecurity.org/papers/general/whitepaper_httpresponse.pdf The code quoted above makes me, too, think this needs to be taken on. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.3 (GNU/Linux) iD8DBQFEbtD0n6GkvSd/BgwRAufVAJ4z0AUHI76QetmcHOABMkJU99hskgCgkhiE xGnlofVWSqYlasplypil/aQ= =Y5Z1 -----END PGP SIGNATURE----- -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

