Ao you Browser Remote Command Execution Vulnerability
Ao you browser has been updated to 4.4.900.
Download the latest version and find that the XSS that adds the home page to the configuration center has been fixed. However, you can find two more XSS.1st. In the configuration center, there is a direct website address function, where the alias is not filtered out.
2nd. This is relatively hidden, In the add one-click place to select the shortcut key only F1-F12, apparently there is no way to di
Php obtains the browser name version instance program. You can directly use HTTP_USER_AGENT to obtain the browser version in php. However, you need to determine the version of the browser, example 1 the code below is used to obtain the browser version. you can use HTTP_USER_AGENT directly in php, but you need to determine which version is the browser,
Example 1
The code is as follows:
Function get_user_browser (){If (empty ($ _ SERVER ['http _ USER_AGENT ']) {Return '';
Get the browser version in PHP directly using http_user_agent can be, but to determine the specific browser, what version we need to judge each,
Example 1
The code is as follows
Copy Code
function Get_user_browser () {if (Empty ($_server[' http_user_agent ')) {Return ';}$agent = $_server[' http_user_agent ');$browser = ";$browser _ver = ";if (Preg_match ('/msies ([^s|;] +)/I ', $agent, $regs)) {$browser = ' Internet Explorer ';$browser _ver = $regs [1];} elseif (Preg_ma
Php obtains the browser name if (strpos ($ _ SERVER [HTTP_USER_AGENT], 'maxthon ')){??? $ Browser = 'maxthon ';} elseif (strpos ($ _ SERVER [HTTP_USER_A php get the browser name
If (strpos ($ _ SERVER [HTTP_USER_AGENT], 'maxthon ')){??? $ Browser = 'maxthon ';} Elseif (strpos ($ _ SERVER [HTTP_USER_AGENT], 'msie 8.0
later reading to sharing, or even creating a PDF file page, this browser presents their concise functions to users. At the same time, it also has many configuration options to change the user agent, font size, scaling, and other features, as well as the privacy mode.
The latest version gives the user script more power. Although it carries a script for blocking advertisements, there is little information about this function.
The free version supports advertisements but is not disturbed. A small
According to foreign media reports, PC Magazine, a well-known Magazine website in the United States, conducted a new round of tests on the new version of Maxthon Cloud Browser, the tested browsers include Chrome, IE, Firefox, and Opera. Among them, aoyou cloud browser HTML5 has the most outstanding performance, excellent test performance, leading the Web direction in the future.
The test browser version is as follows:
Google Chrome 24
Internet Explore
A post was posted in the international community of aoyou cloud browser. The Mx Product, the community administrator, announced that Maxthon for Linux would be developed soon,
I also asked you a few questions in the post:
1. What do you do? (E.g., android development)
2. Which distro are you currently using?
3. Do you use Linux for work or entertainment or both? And what do you do specifically? Coding, sorting ing/sending mails, listening to mus
" sidebar-
CTRL + I open the "favorites" sidebar/Other: Restore all vertically tiled or horizontally tiled or stacked windows-
CTRL + k close all labels except current and locked labels-
CTRL + l open "open" Panel (iternet address or other files can be opened on the current page ...)-
CTRL + N create a blank window (changeable, Maxthon option → tag → new)
CTRL + O open "open" Panel (iternet address or other files can be opened on the current
One. HIVE StreamingIn hive, when you need to implement a function that is not possible with a function in hive, you can use streaming to implement it. The principle can be understood as: using language other than the HQL statement, such as Python, Shell to implement these functions, while cooperating with the HQL statement, to achieve special functions.Two. Instance1. Format of the log file the- Geneva- Geneva on: -: GenevaW3svc12001:D A8:7007:102::244Get/favicon.ico- the-2001:D A8:7007:336: ca
Now many animations are stored in SWF format on the network, it is not like ordinary pictures, video files can be directly downloaded. For the wonderful content, to save it to the local, can only be found in the cache or with Third-party tools such as the use of cumbersome methods to complete. But if you use a browser that is Maxthon, the problem will be solved.
Start Maxthon, right-click in the bla
face version
Ctrl+g feature: Turn on or off the Easy collection panel
Ctrl+h function: Open the "History" sidebar
Ctrl+i Features: Open the Favorites sidebar/another: Restore all windows that are tiled vertically or horizontally or cascade
Ctrl+k function: Close all labels except current and locked labels
Ctrl+l Features: Open "open" panel (you can open the Iternet address or other file on the current page ...)
CTRL + N function: Create a new blank window (can change,
[HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Settings \ Zones \ 3], change "MinLevel" to "10000" (hexadecimal) on the right side of the window, so that you can set a lower security level.5. Let Maxthon use the pop-up window control function of SP2After SP2 is upgraded, IE adds the pop-up window interception function, which allows us to easily intercept most pop-up advertisements. Its powerful function can even block
blank window (can change, maxthon options → tags → new)Ctrl+o Features: Open "open" panel (you can open the Iternet address or other file on the current page ...)Ctrl+p function: Open the "print" Panel (can print web pages, pictures, etc...)Ctrl+q function: Opens the Add to filter list panel (sends the current page address to the filter list)Ctrl+r function: Refresh the current pageCtrl+s function: Opens the Save page panel (can save all the contents
After myie stops development, it is divided into two major versions: Maxthon (formerly myie2) and green browser (GB ). Yesterday, we suddenly saw that the GB developer decided to open-source the earlier version of GB, called myie.
Myie and later versions are not open-source products, but free versions that can be donated. Why is it open-source? I thought about it yesterday, but I didn't write it down. I also mentioned it on the CCF forum today. By th
"Regedit" command to open the Registry Editor, go to [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Settings \ Zones \ 3], change "minlevel" to "10000" (hexadecimal) on the right side of the window, so that you can set a lower security level.
5. Let Maxthon use the pop-up window control function of SP2
After SP2 is upgraded, ie adds the pop-up window interception function, which allows us to easily intercept most
You can directly use HTTP_USER_AGENT to obtain the browser version in php. However, you need to determine the version of the browser,
Example 1
The Code is as follows:
Copy code
Function get_user_browser (){If (empty ($ _ SERVER ['HTTP _ USER_AGENT ']) {Return '';}$ Agent = $ _ SERVER ['HTTP _ USER_AGENT '];$ Browser = '';$ Browser_ver = '';If (preg_match ('/MSIEs ([^ s |;] +)/I', $ agent, $ regs )){$ Browser = 'Internet Explorer ';$ Browser_ver = $ regs [1];} Elseif (pre
)
Ctrl+e function: Turn on or off "search" sidebar (various search engine optional)
ctrl+f function: Open the Find face version
Ctrl+g function: Turn on or off the Easy collection panel
Ctrl+h function: Open the "History" sidebar
Ctrl+i function: Open the Favorites side bar/Another: Restore all vertically tiled or horizontally tiled or stacked windows
Ctrl+k function: Close all tags except current and Locked tabs
Ctrl+l function: Open the Open panel (you can open the Iternet address or ot
Test the Code First
Copy Code code as follows:
Here is the alert result
IE, FF, chrome:208
The maxthon:215 of IE kernel
The theworld:217 of IE kernel
When body plus margin:0;padding:0 , ie, FF, Chrome, Maxthon under the 200, and only TheWorld 202
Then the HTML code the head of the DOCTYPE declaration to remove FF, Chrome, Maxthon value is
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.