Guest_imported
New member
- Jan 1, 1970
- 0
We installed the critical update for the recent cookie exploit ( on 3 different platforms (IE5.5 SP2 on Win98, IE6 on Win98, IE5.5SP 2 on Win2k) , and seem to have suffered an interesting side-effect.
Once installed, the browser seems to have problems with session cookies / session variables. It sets the cookie ok, but when redirecting (on a relative path) to another script, it loses it cookie values.
We've duplicated this on 3 machines, and on 2 servers, and have also seen it affect the login for email. There are probably many other sites affected.
we're unsure of whether this is a bug or a feature of the update. Could somebody else try and replicate this problem? You could test it by setting up an email account at talk21.com, then install the update, then try and log back into your email account.
There is one other interesting aspect to this problem. It works fine when you hit the site using their IP, rather than their DNS name. Oh, and it works fine in Netscape as well (surprisingly)
Once installed, the browser seems to have problems with session cookies / session variables. It sets the cookie ok, but when redirecting (on a relative path) to another script, it loses it cookie values.
We've duplicated this on 3 machines, and on 2 servers, and have also seen it affect the login for email. There are probably many other sites affected.
we're unsure of whether this is a bug or a feature of the update. Could somebody else try and replicate this problem? You could test it by setting up an email account at talk21.com, then install the update, then try and log back into your email account.
There is one other interesting aspect to this problem. It works fine when you hit the site using their IP, rather than their DNS name. Oh, and it works fine in Netscape as well (surprisingly)