00:00
218
This is part of an advisory published at:
resources.enablesecurity.com/advisories/ES-20100601-dotdefender4.txt
This video demo shows how an attacker may be able to force the administrator to switch off the WAF by making use of a cross site scripting vulnerability.