0
mik

Your mail is available via IE History

Recommended Posts

I have not searched to see if this has already been reported / discussed, but use of the Internet Explorer 'History' option can show at least your mail inbox - I have not tried to see whether the contents of your mails can be read in this way.....

Pretty poor security IMO

***********************************************
I'm NOT totally useless... I can be used as a bad example

Share this post


Link to post
Share on other sites
I'm gonna go out on a limb and say you checked the "remember me" checkbox at login? Or your session never ended.

If so, this set the cookie to remember your login info. When you are clicking through your history, the cookie logs you back in and goes to your email.

The link in the history is nothing special...it's just a link. If your didn't log out or kill the session, then it's just like clicking a link in the site.

I won't explain all the backend stuff, but I'm 99.9% positive this is the case, unless you can prove otherwise b/c this is a huge exploit.

Maybe it's not "pretty poor security'. maybe it's "not informed user"?

Share this post


Link to post
Share on other sites
Remember me is never clicked

Session is always killed

and I have experienced this on a number of different computers - history file always shows email headers etc...

***********************************************
I'm NOT totally useless... I can be used as a bad example

Share this post


Link to post
Share on other sites
It took me a while to put together what you are saying. Basically the subject line gets included in the title tag for mail so that when you look at the top of the IE window it now says the subject.

Hotmail says "MSN Hotmail - Message" for the same thing. It does not put the subject in the title tag. GMail uses AJAX so none of the mail history appears in the history. Not sure about Yahoo or anything else.

Emails are unreadable still as long as you are clearing the cache after you log out, but the subject line is visable unless the history is cleared also. Not sure how big of a security issue it is, no one can read the emails but they can see the subject.
Yesterday is history
And tomorrow is a mystery

Parachutemanuals.com

Share this post


Link to post
Share on other sites
What service are you using to log on to DZ ?
AOL, MSN, Do you have Windows XP ?
With this I could better advice you on how to prevent this problem in the future.
You're as wonderful as a slinkie!! NOT REALLY GOOD FOR ANYTHING BUT THEY BRING A SMILE TO YOUR FACE WHEN PUSHED DOWN THE STAIRS.

Share this post


Link to post
Share on other sites
It's b/c the html tag has "Dropzone.com: [Message Title]" in it... <br /><br />nothing else is viewable. <br /><br />If they change it to remove the subject from the title tag, it will jsut day "Dropzone.com". </div> <div class="ipsItemControls"> <div data-controller='core.front.core.reaction' class='ipsItemControls_right ipsClearfix '> <div class='ipsReact ipsPos_right'> <div class='ipsReact_blurb ipsHide' data-role='reactionBlurb'> </div> </div> </div> <ul class="ipsComment_controls ipsClearfix ipsItemControls_left" data-role="commentControls"> <li data-ipsquote-editor="topic_comment" data-ipsquote-target="#comment-2400233" class="ipsJS_show"> <button class="ipsButton ipsButton_light ipsButton_verySmall ipsButton_narrow cMultiQuote ipsHide" data-action="multiQuoteComment" data-ipstooltip data-ipsquote-multiquote data-mqid="mq2400233" title="MultiQuote"><i class="fa fa-plus"></i></button> </li> <li data-ipsquote-editor="topic_comment" data-ipsquote-target="#comment-2400233" class="ipsJS_show"> <a href="#" data-action="quoteComment" data-ipsquote-singlequote>Quote</a> </li> <li class="ipsHide" data-role="commentLoading"> <span class="ipsLoading ipsLoading_tiny ipsLoading_noAnim"></span> </li> </ul> </div> </div> <div class="ipsMenu ipsMenu_wide ipsHide cPostShareMenu" id="elSharePost_2400233_menu"> <div class="ipsPad"> <h4 class="ipsType_sectionHead">Share this post</h4> <hr class="ipsHr"> <h5 class="ipsType_normal ipsType_reset">Link to post</h5> <input type="text" value="https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/?do=findComment&comment=2400233" class="ipsField_fullWidth"> <h5 class="ipsType_normal ipsType_reset ipsSpacer_top">Share on other sites</h5> <ul class='ipsList_inline ipsList_noSpacing ipsClearfix' data-controller="core.front.core.sharelink"> <li> <a href="http://twitter.com/share?text=Your%20mail%20is%20available%20via%20IE%20History&url=https%3A%2F%2Fwww.skydiveforum.com%2Fforums%2Ftopic%2F62801-your-mail-is-available-via-ie-history%2F%3Fdo%3DfindComment%26comment%3D2400233" class="cShareLink cShareLink_twitter" target="_blank" data-role="shareLink" title='Share on Twitter' data-ipsTooltip rel='noopener'> <i class="fa fa-twitter"></i> </a></li> <li> <a href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.skydiveforum.com%2Fforums%2Ftopic%2F62801-your-mail-is-available-via-ie-history%2F%3Fdo%3DfindComment%26comment%3D2400233" class="cShareLink cShareLink_facebook" target="_blank" data-role="shareLink" title='Share on Facebook' data-ipsTooltip rel='noopener'> <i class="fa fa-facebook"></i> </a></li> <li> <a href="http://www.linkedin.com/shareArticle?mini=true&url=https%3A%2F%2Fwww.skydiveforum.com%2Fforums%2Ftopic%2F62801-your-mail-is-available-via-ie-history%2F%3Fdo%3DfindComment%26comment%3D2400233&title=Your+mail+is+available+via+IE+History" class="cShareLink cShareLink_linkedin" target="_blank" data-role="shareLink" title='Share on LinkedIn' data-ipsTooltip rel='noopener'> <i class="fa fa-linkedin"></i> </a></li> <li> <a href="http://pinterest.com/pin/create/button/?url=https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/?do=findComment%26comment=2400233&media=" class="cShareLink cShareLink_pinterest" target="_blank" data-role="shareLink" title='Share on Pinterest' data-ipsTooltip rel='noopener'> <i class="fa fa-pinterest"></i> </a></li> </ul> </div> </div> </div> </div> </article> <input type="hidden" name="csrfKey" value="c07b7be82aa1a2577980fb4d9f2b274a" /> </form> </div> <a id="replyForm"></a> <div data-role="replyArea" class="cTopicPostArea ipsAreaBackground ipsPad ipsSpacer_top"> <div class='ipsPad cGuestTeaser ipsSpacer_bottom'> <h2 class='ipsType_pageTitle'>Join the conversation</h2> <p class='ipsType_normal ipsType_reset ipsSpacer_top ipsSpacer_half'> You can post now and register later. If you have an account, <a href='https://www.skydiveforum.com/login/' data-ipsDialog data-ipsDialog-size='medium' data-ipsDialog-title='Sign In Now'>sign in now</a> to post with your account. <br><span class='ipsType_warning'><strong>Note:</strong> Your post will require moderator approval before it will be visible.</span> </p> </div> <form accept-charset='utf-8' class="ipsForm ipsForm_vertical" action="https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/?tab=comments" method="post" enctype="multipart/form-data"> <input type="hidden" name="commentform_62801_submitted" value="1"> <input type="hidden" name="csrfKey" value="c07b7be82aa1a2577980fb4d9f2b274a"> <input type="hidden" name="_contentReply" value="1"> <input type="hidden" name="captcha_field" value="1"> <input type="hidden" name="MAX_FILE_SIZE" value="66060288"> <input type="hidden" name="plupload" value="0d0ad9d557575fb249e54340e07b62ec"> <div class='ipsComposeArea ipsComposeArea_withPhoto ipsClearfix ipsContained'> <div class='ipsPos_left ipsResponsive_hidePhone ipsResponsive_block'> <span class='ipsUserPhoto ipsUserPhoto_small '> <img src='https://www.skydiveforum.com/uploads/set_resources_20/84c1e40ea0e759e3f1505eb1788ddf3c_default_photo.png' alt='Guest'> </span> </div> <div class='ipsComposeArea_editor'> <ul class='ipsForm ipsForm_horizontal' data-ipsEditor-toolList> <li class='ipsFieldRow ipsFieldRow_fullWidth'> <input type="email" name="guest_email" value="" id="elInput_guest_email" aria-required='true' placeholder='Enter your email address (this is not shown to other users)' autocomplete="email" > </li> </ul> <div class='ipsType_normal ipsType_richText ipsType_break' data-ipsEditor data-ipsEditor-controller="https://www.skydiveforum.com/index.php?app=core&module=system&controller=editor" data-ipsEditor-minimized data-ipsEditor-toolbars='{"desktop":[{"name":"row1","items":["Bold","Italic","Underline","-","ipsLink","Ipsquote","ipsCode","ipsEmoticon","-","Ipsspoiler","BulletedList","NumberedList","-","-","ipsPreview"]},"\/"],"tablet":[{"name":"row1","items":["Bold","Italic","Underline","-","ipsLink","Ipsquote","ipsEmoticon","-","BulletedList","NumberedList","-","ipsPreview"]},"\/"],"phone":[{"name":"row1","items":["Bold","Italic","Underline","-","ipsEmoticon","-","ipsLink","-","ipsPreview"]},"\/"]}' data-ipsEditor-extraPlugins='' data-ipsEditor-postKey="09345e8759451f7e1db55934099b53e7" data-ipsEditor-autoSaveKey="reply-forums/forums-62801" data-ipsEditor-skin="ips" data-ipsEditor-name="topic_comment_62801" data-ipsEditor-pasteBehaviour='rich' data-ipsEditor-ipsPlugins="ipsautolink,ipsautosave,ipsctrlenter,ipscode,ipscontextmenu,ipsemoticon,ipsimage,ipslink,ipsmentions,ipspage,ipspaste,ipspreview,ipsquote,ipsspoiler,ipsautogrow,ipssource,removeformat"> <div data-role='editorComposer' class='ipsContained'> <noscript> <textarea name="topic_comment_62801_noscript" rows="15"></textarea> </noscript> <div class="ipsHide norewrite" data-role="mainEditorArea"> <textarea name="topic_comment_62801" data-role='contentEditor' class="ipsHide" tabindex='1'></textarea> </div> <div class='ipsComposeArea_dummy ipsJS_show' tabindex='1'><i class='fa fa-comment-o'></i> Reply to this topic...</div> <div class="ipsHide ipsComposeArea_editorPaste" data-role="pasteMessage"> <p class='ipsType_reset ipsPad_half'> <a class="ipsPos_right ipsType_normal ipsCursor_pointer ipsComposeArea_editorPasteSwitch" data-action="keepPasteFormatting" title='Keep formatting' data-ipsTooltip>×</a> <i class="fa fa-info-circle"></i>  Pasted as rich text.   <a class='ipsCursor_pointer' data-action="removePasteFormatting">Paste as plain text instead</a> </p> </div> <div class="ipsHide ipsComposeArea_editorPaste" data-role="emoticonMessage"> <p class='ipsType_reset ipsPad_half'> <i class="fa fa-info-circle"></i>  Only 75 emoji are allowed. </p> </div> <div class="ipsHide ipsComposeArea_editorPaste" data-role="embedMessage"> <p class='ipsType_reset ipsPad_half'> <a class="ipsPos_right ipsType_normal ipsCursor_pointer ipsComposeArea_editorPasteSwitch" data-action="keepEmbeddedMedia" title='Keep embedded content' data-ipsTooltip>×</a> <i class="fa fa-info-circle"></i>  Your link has been automatically embedded.   <a class='ipsCursor_pointer' data-action="removeEmbeddedMedia">Display as a link instead</a> </p> </div> <div class="ipsHide ipsComposeArea_editorPaste" data-role="embedFailMessage"> <p class='ipsType_reset ipsPad_half'> </p> </div> <div class="ipsHide ipsComposeArea_editorPaste" data-role="autoSaveRestoreMessage"> <p class='ipsType_reset ipsPad_half'> <a class="ipsPos_right ipsType_normal ipsCursor_pointer ipsComposeArea_editorPasteSwitch" data-action="keepRestoredContents" title='Keep restored contents' data-ipsTooltip>×</a> <i class="fa fa-info-circle"></i>  Your previous content has been restored.   <a class='ipsCursor_pointer' data-action="clearEditorContents">Clear editor</a> </p> </div> <div class="ipsHide ipsComposeArea_editorPaste" data-role="imageMessage"> <p class='ipsType_reset ipsPad_half'> <a class="ipsPos_right ipsType_normal ipsCursor_pointer ipsComposeArea_editorPasteSwitch" data-action="removeImageMessage">×</a> <i class="fa fa-info-circle"></i>  You cannot paste images directly. Upload or insert images from URL. </p> </div> <div data-ipsEditor-toolList class="ipsAreaBackground_light ipsClearfix"> <div data-role='attachmentArea'> <div class="ipsComposeArea_dropZone ipsComposeArea_dropZoneSmall ipsClearfix ipsClearfix" id='elEditorDrop_topic_comment_62801'> <div> <ul class='ipsList_inline ipsClearfix'> <div> <ul class='ipsList_inline ipsClearfix'> <li class='ipsPos_right'> <a class="ipsButton ipsButton_light" href='#' data-ipsDialog data-ipsDialog-forceReload data-ipsDialog-title='Insert image from URL' data-ipsDialog-url="https://www.skydiveforum.com/index.php?app=core&module=system&controller=editor&do=link&image=1&postKey=09345e8759451f7e1db55934099b53e7&editorId=topic_comment_62801&csrfKey=c07b7be82aa1a2577980fb4d9f2b274a">Insert image from URL</a></li> </li> </ul> </div> </ul> </div> </div> </div> </div> </div> <div data-role='editorPreview' class='ipsHide'> <div class='ipsAreaBackground_light ipsPad_half' data-role='previewToolbar'> <a href='#' class='ipsPos_right' data-action='closePreview' title='Return to editing mode' data-ipsTooltip>×</a> <ul class='ipsButton_split'> <li data-action='resizePreview' data-size='desktop'><a href='#' title='View at approximate desktop size' data-ipsTooltip class='ipsButton ipsButton_verySmall ipsButton_primary'>Desktop</a></li> <li data-action='resizePreview' data-size='tablet'><a href='#' title='View at approximate tablet size' data-ipsTooltip class='ipsButton ipsButton_verySmall ipsButton_light'>Tablet</a></li> <li data-action='resizePreview' data-size='phone'><a href='#' title='View at approximate phone size' data-ipsTooltip class='ipsButton ipsButton_verySmall ipsButton_light'>Phone</a></li> </ul> </div> <div data-role='previewContainer' class='ipsAreaBackground ipsType_center'></div> </div> </div> <ul class='ipsToolList ipsToolList_horizontal ipsClear ipsClearfix ipsJS_hide' data-ipsEditor-toolList> <li class='ipsPos_left ipsResponsive_noFloat ipsType_small'> <div data-ipsCaptcha data-ipsCaptcha-service='recaptcha2' data-ipsCaptcha-key="6LcH7UEUAAAAAIGWgOoyBKAqjLmOIKzfJTOjyC7z" data-ipsCaptcha-lang="en_US" data-ipsCaptcha-theme="light"> <noscript> <div style="width: 302px; height: 352px;"> <div style="width: 302px; height: 352px; position: relative;"> <div style="width: 302px; height: 352px; position: absolute;"> <iframe src="https://www.google.com/recaptcha/api/fallback?k=6LcH7UEUAAAAAIGWgOoyBKAqjLmOIKzfJTOjyC7z" style="width: 302px; height:352px; border-style: none;"> </iframe> </div> <div style="width: 250px; height: 80px; position: absolute; border-style: none; bottom: 21px; left: 25px; margin: 0px; padding: 0px; right: 25px;"> <textarea id="g-recaptcha-response" name="g-recaptcha-response" class="g-recaptcha-response" style="width: 250px; height: 80px; border: 1px solid #c1c1c1; margin: 0px; padding: 0px; resize: none;"></textarea> </div> </div> </div> </noscript> </div> </li> <li> <button type="submit" class="ipsButton ipsButton_primary" tabindex="2" accesskey="s" role="button">Submit Reply</button> </li> </ul> </div> </div> </form> </div> <div class="ipsResponsive_noFloat ipsResponsive_showPhone ipsResponsive_block ipsSpacer_top"> <div data-followApp='forums' data-followArea='topic' data-followID='62801' data-controller='core.front.core.followButton'> <span class='ipsType_light ipsType_blendLinks ipsResponsive_hidePhone ipsResponsive_inline'><a href='https://www.skydiveforum.com/login/' title='Go to the sign in page'></a></span> <a href='https://www.skydiveforum.com/login/' class="ipsBadge ipsBadge_icon ipsBadge_positiveon_verySmallipsButton_disabled" data-role="followButton" title="Sign in to follow this" data-ipsTooltip> <i class="fa fa-plus"></i></a> <span class='ipsCommentCount ipsResponsive_hidePhone'>0</span> </div> </div> <div class="ipsResponsive_noFloat ipsResponsive_showPhone ipsResponsive_block ipsSpacer_top"> </div> </div> <div class="ipsGrid ipsGrid_collapsePhone ipsPager ipsClearfix ipsSpacer_top ipsContained"> <div class="ipsGrid_span6 ipsType_left ipsPager_prev ipsPager_noDesc"> <a href="https://www.skydiveforum.com/forums/forum/20-error-and-bug-reports/" title="Go to Error and Bug Reports" rel="parent"> <span class="ipsPager_type">Go To Topic Listing</span> </a> </div> </div> <hr class="ipsHr"> <ul class='ipsList_inline ipsList_noSpacing ipsClearfix' data-controller="core.front.core.sharelink"> <li> <a href="http://twitter.com/share?text=Your%20mail%20is%20available%20via%20IE%20History&url=https%3A%2F%2Fwww.skydiveforum.com%2Fforums%2Ftopic%2F62801-your-mail-is-available-via-ie-history%2F" class="cShareLink cShareLink_twitter" target="_blank" data-role="shareLink" title='Share on Twitter' data-ipsTooltip rel='noopener'> <i class="fa fa-twitter"></i> </a></li> <li> <a href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.skydiveforum.com%2Fforums%2Ftopic%2F62801-your-mail-is-available-via-ie-history%2F" class="cShareLink cShareLink_facebook" target="_blank" data-role="shareLink" title='Share on Facebook' data-ipsTooltip rel='noopener'> <i class="fa fa-facebook"></i> </a></li> <li> <a href="http://www.linkedin.com/shareArticle?mini=true&url=https%3A%2F%2Fwww.skydiveforum.com%2Fforums%2Ftopic%2F62801-your-mail-is-available-via-ie-history%2F&title=Your+mail+is+available+via+IE+History" class="cShareLink cShareLink_linkedin" target="_blank" data-role="shareLink" title='Share on LinkedIn' data-ipsTooltip rel='noopener'> <i class="fa fa-linkedin"></i> </a></li> <li> <a href="http://pinterest.com/pin/create/button/?url=https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/&media=" class="cShareLink cShareLink_pinterest" target="_blank" data-role="shareLink" title='Share on Pinterest' data-ipsTooltip rel='noopener'> <i class="fa fa-pinterest"></i> </a></li> </ul> <!-- Footer Ad Code Start --> <div class="ipsSpacer_top ipsPad"> <!-- /1003974/NDZ_Forums_728x90_Footer --> <center> <div id="div-gpt-ad-1536044175740-0"> <script> googletag.cmd.push(function() { googletag.display('div-gpt-ad-1536044175740-0'); }); </script> </div> </center> </div> <!-- Footer Ad Code End --> </div> <div id='ipsLayout_sidebar' class='ipsLayout_sidebarright ' data-controller='core.front.widgets.sidebar'> <aside id="elContextualTools" class='ipsClearfix' > <div class="ipsSpacer_bottom" style="2px;"> <center> <!-- /1003974/NDZ_Forums_160x600_Sidebar --> <div id='div-gpt-ad-1536044318677-0'> <script> googletag.cmd.push(function() { googletag.display('div-gpt-ad-1536044318677-0'); }); </script> </div> </center> </div> <div id="sticker" style="padding: 2px;"> <center> <!-- /1003974/NDZ_Forums_160x600_Sidebar_Bott --> <div id='div-gpt-ad-1536044391388-0'> <script> googletag.cmd.push(function() { googletag.display('div-gpt-ad-1536044391388-0'); }); </script> </div> </center> </div> </aside> <hr class='ipsHr ipsSpacer_both ipsSpacer_double'> </div> </div> </div> <a id="backtoTop" onclick="$('body').animatescroll();" title="Back To Top"><i class="fa fa-chevron-circle-up"></i></a> </main> </div> <!-- / base-wrapper --> <footer id="ipsLayout_footer" class="ipsClearfix base-footer"> <div class="ipsLayout_container"> <!-- Footer Ad Code End --> <div class="ipsGrid"> <div class="ipsGrid_span12 footerCol ipsResponsive_fullWidthPhone"> <div class="base-footer__bigfoot ipsGrid ipsGrid_collapsePhone "> <div class="ipsGrid ipsGrid_span3 ipsType_left"> <h3> About Us </h3> <div class="ftr-block-content base-footer-blank1"> <a href='/advertise/'>Advertise</a><br/> <a href='/about/'>About Us</a><br/> <a href='/help/'>Help</a><br/> <a href='/contact-us/'>Contact Us</a> </div> </div> <div class="ipsGrid ipsGrid_span3 ipsType_left"> <h3> Community </h3> <div class="ftr-block-content base-footer-blank2"> <a href='/forums/'>Forums</a><br/> <a href='/discover/'>Activity Feed</a><br/> </div> </div> <div class="ipsGrid ipsGrid_span3 ipsType_left"> <h3> Get Involved </h3> <div class="ftr-block-content base-footer-blank3"> <a href='/help/other/write-for-us-r30/'>Write for Us</a><br/> <a href='/gear/?do=form&d=5'>Submit Gear</a><br/> <a href='/gallery/submit/'>Submit a Photo</a><br/> <a href='/videos/add/'>Submit a Video</a> </div> </div> <div class="ipsGrid ipsGrid_span3 ipsType_left"> <h3> <i class="fa fa-share-alt"></i> Follow Us </h3> <div class="ftr-block-content base-footer-social"> <ul class="base-social-icons ipsToolList ipsPos_left"> <li><a title="Facebook" target="_blank" href="http://facebook.com/dropzoneskydiving "><i class="fa fa-facebook ipsType_larger"></i> Facebook</a></li> <li><a title="Twitter" target="_blank" href="http://twitter.com/dropzonecom "><i class="fa fa-twitter ipsType_larger"></i> Twitter</a></li> <li><a title="Instagram" target="_blank" href="http://instagram.com/dropzoneskydiving"><i class="fa fa-instagram ipsType_larger"></i> Instagram</a></li> </ul> </div> </div> </div> </div> <div class="ipsGrid_span12 footerCol ipsResponsive_fullWidthPhone ipsFooter"> <span class="sFooter__copyright" style="color: white">Invision Community © 2019 IPS, Inc.</span> <ul class='ipsList_inline ipsSpacer_top' id="elFooterLinks"> <!----> <!-- <li><a rel="nofollow" href='https://www.skydiveforum.com/contact/' data-ipsdialog data-ipsDialog-remoteSubmit data-ipsDialog-flashMessage='Thanks, your message has been sent to the administrators.' data-ipsdialog-title="Contact Us">Contact Us</a></li> --> </ul> <!--<div class="base-footer__credits"><script src="https://www.skydiveforum.com/uploads/set_resources_20/f8fa2bd26859b580f2a6722e2e4f75ef_main.js"></script></div>--> <script src="/custom_assets/lazyload_master/src/lazyload.js"></script> <script> var lazyLoad = new LazyLoad(); // **please note the first lowercase L!** </script> <script type="text/javascript"> function toggle_visibility(id) { var e = document.getElementById(id); if(e.style.display == 'block') e.style.display = 'none'; else e.style.display = 'block'; } </script> <script> // Get the modal var modal = document.getElementById('myModal'); // Get the image and insert it inside the modal - use its "alt" text as a caption var img = $('.myImg'); var modalImg = $("#img01"); var captionText = document.getElementById("caption"); $('.myImg').click(function(){ modal.style.display = "block"; var newSrc = this.src; modalImg.attr('src', newSrc); captionText.innerHTML = this.alt; }); // Get the <span> element that closes the modal var span = document.getElementsByClassName("close")[0]; if (span) { // When the user clicks on <span> (x), close the modal span.onclick = function() { modal.style.display = "none"; } } </script> <p id='elCopyright'> <span id='elCopyright_userLine'>Copyright Skydiveforum.com 2024</span> <a rel='nofollow' title='Invision Community' href='https://www.invisioncommunity.com/'>Powered by Invision Community</a> </p> </div> </div> </div> <!--- D4DR Analytics ---> <!-- Google tag (gtag.js) --> <script async src="https://www.googletagmanager.com/gtag/js?id=G-087LRFPXV3"></script> <script> window.dataLayer = window.dataLayer || []; function gtag(){dataLayer.push(arguments);} gtag('js', new Date()); gtag('config', 'G-087LRFPXV3'); </script> <!--- D4DR Analytics ---> </footer> <div id="elMobileDrawer" class="ipsDrawer ipsHide"> <a href="#" class="ipsDrawer_close" data-action="close"><span>×</span></a> <div class="ipsDrawer_menu"> <div class="ipsDrawer_content"> <ul id="elUserNav_mobile" class="ipsList_inline signed_in ipsClearfix"> </ul> <div class="ipsSpacer_bottom ipsPad base-nav__ctas"> <ul class="ipsToolList ipsGrid"> <li class="ipsGrid_span12"> <a href="https://www.skydiveforum.com/login/" class="ipsButton ipsButton_link ipsButton_small ipsButton_fullWidth">Sign In</a> </li> <li class="ipsGrid_span12"> <a href="https://www.skydiveforum.com/register/" id="elRegisterButton_mobile" class="ipsButton ipsButton_small ipsButton_fullWidth ipsButton_link">Sign Up</a> </li> </ul> </div> <ul class="ipsDrawer_list"> <li><a href="https://www.skydiveforum.com/forums/" >Forums</a></li> <li><a href="https://www.skydiveforum.com/dropzones/" >Dropzones</a></li> <li><a href="https://www.skydiveforum.com/classifieds/" >Classifieds</a></li> <li><a href="https://www.skydiveforum.com/gear/" >Gear</a></li> <li><a href="https://www.skydiveforum.com/indoor/" >Indoor</a></li> <li><a href="https://www.skydiveforum.com/articles/" >Articles</a></li> <li><a href="https://www.skydiveforum.com/gallery/" >Photos</a></li> <li><a href="https://www.skydiveforum.com/videos/" >Videos</a></li> <li><a href="https://www.skydiveforum.com/calendar/" >Calendar</a></li> <li><a href="https://www.skydiveforum.com/stolen/" >Stolen</a></li> <li><a href="https://www.skydiveforum.com/fatalities/" >Fatalities</a></li> <li><a href="https://www.skydiveforum.com/subscriptions/" >Subscriptions</a></li> <li><a href="https://www.skydiveforum.com/leaderboard/" >Leaderboard</a></li> <li class="ipsDrawer_itemParent"> <h4 class="ipsDrawer_title"><a href="#">Activity</a></h4> <ul class="ipsDrawer_list"> <li data-action="back"><a href="#">Back</a></li> <li><a href="https://www.skydiveforum.com/discover/">Activity</a></li> <li> <a href='https://www.skydiveforum.com/discover/' > All Activity </a> </li> <li> <a href='' > My Activity Streams </a> </li> <li> <a href='https://www.skydiveforum.com/discover/unread/' > Unread Content </a> </li> <li> <a href='https://www.skydiveforum.com/discover/content-started/' > Content I Started </a> </li> </ul> </li> </ul> </div> </div> </div> <script type='text/javascript'> var ipsDebug = false; var CKEDITOR_BASEPATH = '//www.skydiveforum.com/applications/core/interface/ckeditor/ckeditor/'; var ipsSettings = { cookie_path: "/", cookie_prefix: "ips4_", cookie_ssl: true, upload_imgURL: "", message_imgURL: "", notification_imgURL: "", baseURL: "//www.skydiveforum.com/", jsURL: "//www.skydiveforum.com/applications/core/interface/js/js.php", csrfKey: "c07b7be82aa1a2577980fb4d9f2b274a", antiCache: "ecd0448f62", disableNotificationSounds: false, useCompiledFiles: true, links_external: true, memberID: 0, analyticsProvider: "none", viewProfiles: true, /* IPS Themes: Base Framework */ base: { boxedMode: "0", hoverDesc: "1", navLayout: "nav-floated", footer: { instagram: { userid: "0", clientid: "", token: "", limit: "6", tag: "" }, twitter: { widgetid: "", limit: "" } // }, elements: { primaryBgs: ".base-user__bar, #ipsLayout_header, .ipsNavBar_primary ul.ipsResponsive_showDesktop.ipsResponsive_block, .ipsTabs,a.ipsSideMenu_itemActive,.cCalendar td.cCalendar_today, .cCalendarWeek div.cCalendar_today,.ipsCarousel .ipsCarousel_nav, .ipsStepBar .ipsStep.ipsStep_active a, .ipsStepBar .ipsStep.ipsStep_active span, .cCalendarWeek div.cCalendar_today,.ipsAttachment_progress span, #elSettingsTabs .ipsTabs_item.ipsTabs_activeItem, #elUserNav,#elSearchNavContainer, #elMobileNav, .ipsLikeRep .ipsButton,.cProfileRepScore_neutral, .ipsWidget.ipsWidget_vertical .ipsWidget_title, .base-group-bgs label, .base-hero,.ipsButton_primary, #ipsLayout_header nav a.active, #ipsLayout_header header,.nav-wrapper,.ipsType_sectionTitle,.ipsWidget.ipsWidget_vertical .ipsWidget_title, .ipsWidget.ipsWidget_horizontal .ipsWidget_title, #elSearchNavContainer,.base-hover-desc .cForumList .ipsDataItem .base-hover-desc-wrap .ipsDataItem_meta", primaryColors: ".ipsDataItem_subList li a:hover, .ipsDataItem_subList li:hover .ipsItemStatus, .nothing", primaryBorders: ".base-group-bgs label, .ipsTabs_activeItem, .elUserNav_sep", primaryMisc1: ".base-hover-desc .cForumList .ipsDataItem .base-hover-desc-wrap .ipsDataItem_meta:after", secondaryBgs: "#elRegisterButton, .cGallerySubmit_step, a.cEvents_style1, .cEvents_style1 a, .cCalendarIcon.cEvents_style1, #elMobileBreadcrumb,.ipsButtonBar .ipsPagination .ipsPagination_page.ipsPagination_active a,.ipsProgressBar.ipsProgressBar_animated .ipsProgressBar_progress, .cToken, .ipsSelectTree .cToken,.nothing", secondaryColors: ".base-hero a, #ipsLayout_footer .base-footer p a,#ipsLayout_header nav #ipsLayout_mainNav .ipsMenu a.ipsNavActive,#ipsLayout_footer .base-footer__bigfoot .base-footer-twitter .tweet a, .ipsCarousel .ipsCarousel_nav:hover,.cDownloadsCarouselItem_info p a, .ipsRating .ipsRating_on .fa-star,.ipsRating .ipsRating_hover .fa-star,#elMobileBreadcrumb:before,.ipsPageHeader .ipsType_normalBig a,.ipsLike_contents a,blockquote.ipsQuote div.ipsQuote_citation a,.ipsAreaBackground:last-child li a:hover,.ipsType_huge, #ipsTabs_elProfileTabs_elActivity_panel a:hover, body #elProfilePhoto .ipsButton:hover, body #elProfileStats .ipsButton:hover,.ipsAttachment_dropZone i:first-child, .ipsMenu_footerBar a,.ipsDialog_close:hover, .ipsItemStatus.ipsItemStatus_large, .ipsMenu_item:not( .ipsMenu_itemClicked ):not( .ipsMenu_itemDisabled ) a:hover, .ipsMenu_item[data-selected] a, #elHeaderSubLinks a:hover, .ipsBreadcrumb ul a:hover", secondaryBorders: ".ipsNavBar_primary ul li.ipsNavBar_active a, #ipsLayout_footer .base-footer .base-footer-nav li a.ipsNavActive,.cGalleryAlbumSlider li.cGalleryAlbumSlider_active,.cGallerySubmit_current,#ipsLayout_header nav #ipsLayout_mainNav li a.ipsNavActive", primaryFonts: ".baseFont_primary,body,.ipsTag_prefix", secondaryFonts: ".ipsStep_title,.cNexusProduct_title,.cDownloadsCarouselItem_info h3,.baseFont_secondary,.cBlogInfo .ipsGrid li .ipsType_normal,.cProfileBlog_stats li strong, .ipsWidget.ipsWidget_horizontal .ipsWidget_title, .ipsWidget_statsCount, .cStaffDirectory h2,.cGallerySubmit_step,.ipsType_veryLarge,.ipsTable.ipsMatrix .ipsMatrix_subHeader,.ipsDialog_title, .ipsButtonBar .ipsButtonRow li span, .ipsType_pageTitle, .ipsType_sectionHead, .ipsMenu_title, .ipsDataItem_stats_number, #elSearch #elSearchFilter, .hero-message h2, #elVNC_sidebar .ipsFieldRow .ipsFieldRow_label", } } }; </script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_global/root_library.js.9a30b2a96e10c805b0673a4a930cd74d.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_global/root_js_lang_1.js.c9466ed81584137fcef774455c93a942.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_global/root_framework.js.1a201c90776ebefbd948d05bea938c94.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_core/global_global_core.js.636475dace6e0597fb2e28b82d9686e1.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_core/plugins_plugins.js.bd9c4a90629b3d39b657cd519781d803.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_global/root_front.js.a3211886bc94c541aff40e41beafff83.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_forums/front_front_topic.js.8a06dd06fb0c6a2e5ffbc3a7b3db01ed.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_core/front_front_core.js.e915f9c6915abfcc2263916f18091f9d.js?v=ecd0448f62' data-ips></script> <script type='text/javascript' src='https://www.skydiveforum.com/uploads/javascript_global/root_map.js.07a587dda372d6b14df7b83297bfe916.js?v=ecd0448f62' data-ips></script> <script type='text/javascript'> ips.setSetting( 'date_format', jQuery.parseJSON('"mm\/dd\/yy"') ); ips.setSetting( 'date_first_day', jQuery.parseJSON('0') ); ips.setSetting( 'remote_image_proxy', jQuery.parseJSON('0') ); ips.setSetting( 'ipb_url_filter_option', jQuery.parseJSON('"none"') ); ips.setSetting( 'url_filter_any_action', jQuery.parseJSON('"allow"') ); ips.setSetting( 'bypass_profanity', jQuery.parseJSON('0') ); ips.setSetting( 'emoji_style', jQuery.parseJSON('"disabled"') ); ips.setSetting( 'emoji_shortcodes', jQuery.parseJSON('"1"') ); ips.setSetting( 'emoji_ascii', jQuery.parseJSON('"1"') ); ips.setSetting( 'emoji_cache', jQuery.parseJSON('"1585818280"') ); </script> <script type='application/ld+json'> { "name": "Your mail is available via IE History", "headline": "Your mail is available via IE History", "text": "I have not searched to see if this has already been reported / discussed, but use of the Internet Explorer \u0027History\u0027 option can show at least your mail inbox - I have not tried to see whether the contents of your mails can be read in this way.....\u0026#13; Pretty poor security IMO \u0026#13; ***********************************************\u0026#13; I\u0027m NOT totally useless... I can be used as a bad example", "dateCreated": "2006-08-19T19:48:19+0000", "datePublished": "2006-08-19T19:48:19+0000", "pageStart": 1, "pageEnd": 1, "image": "https://data%3Aimage/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%201024%201024%22%20style=%22background:%23c46a62%22%3E%3Cg%3E%3Ctext%20text-anchor=%22middle%22%20dy=%22.35em%22%20x=%22512%22%20y=%22512%22%20fill=%22%23ffffff%22%20font-size=%22700%22%20font-family=%22-apple-system,%20BlinkMacSystemFont,%20Roboto,%20Helvetica,%20Arial,%20sans-serif%22%3EM%3C/text%3E%3C/g%3E%3C/svg%3E", "author": { "url": "https://www.skydiveforum.com/profile/18819-mik/" }, "interactionStatistic": [ { "@type": "InteractionCounter", "interactionType": "http://schema.org/ViewAction", "userInteractionCount": 1469 }, { "@type": "InteractionCounter", "interactionType": "http://schema.org/CommentAction", "userInteractionCount": 5 }, { "@type": "InteractionCounter", "interactionType": "http://schema.org/FollowAction", "userInteractionCount": 0 } ], "@context": "http://schema.org", "@type": "DiscussionForumPosting", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/", "isPartOf": { "@id": "https://www.skydiveforum.com/#website" }, "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/", "discussionUrl": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/", "comment": [ { "@type": "Comment", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-135947", "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-135947", "author": { "@type": "Person", "name": "mik", "image": "data:image/svg+xml,%3Csvg%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%20viewBox%3D%220%200%201024%201024%22%20style%3D%22background%3A%23c46a62%22%3E%3Cg%3E%3Ctext%20text-anchor%3D%22middle%22%20dy%3D%22.35em%22%20x%3D%22512%22%20y%3D%22512%22%20fill%3D%22%23ffffff%22%20font-size%3D%22700%22%20font-family%3D%22-apple-system%2C%20BlinkMacSystemFont%2C%20Roboto%2C%20Helvetica%2C%20Arial%2C%20sans-serif%22%3EM%3C%2Ftext%3E%3C%2Fg%3E%3C%2Fsvg%3E", "url": "https://www.skydiveforum.com/profile/18819-mik/" }, "dateCreated": "2006-08-19T19:48:19+0000", "text": "I have not searched to see if this has already been reported / discussed, but use of the Internet Explorer \u0027History\u0027 option can show at least your mail inbox - I have not tried to see whether the contents of your mails can be read in this way.....\u0026#13; Pretty poor security IMO \u0026#13; ***********************************************\u0026#13; I\u0027m NOT totally useless... I can be used as a bad example" }, { "@type": "Comment", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2272750", "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2272750", "author": { "@type": "Person", "name": "stratman05", "image": "data:image/svg+xml,%3Csvg%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%20viewBox%3D%220%200%201024%201024%22%20style%3D%22background%3A%237cc462%22%3E%3Cg%3E%3Ctext%20text-anchor%3D%22middle%22%20dy%3D%22.35em%22%20x%3D%22512%22%20y%3D%22512%22%20fill%3D%22%23ffffff%22%20font-size%3D%22700%22%20font-family%3D%22-apple-system%2C%20BlinkMacSystemFont%2C%20Roboto%2C%20Helvetica%2C%20Arial%2C%20sans-serif%22%3ES%3C%2Ftext%3E%3C%2Fg%3E%3C%2Fsvg%3E", "url": "https://www.skydiveforum.com/profile/31901-stratman05/" }, "dateCreated": "2006-09-04T00:02:03+0000", "text": "I\u0027m gonna go out on a limb and say you checked the \"remember me\" checkbox at login? Or your session never ended.\u0026#13; If so, this set the cookie to remember your login info. When you are clicking through your history, the cookie logs you back in and goes to your email.\u0026#13; The link in the history is nothing special...it\u0027s just a link. If your didn\u0027t log out or kill the session, then it\u0027s just like clicking a link in the site.\u0026#13; I won\u0027t explain all the backend stuff, but I\u0027m 99.9% positive this is the case, unless you can prove otherwise b/c this is a huge exploit.\u0026#13; Maybe it\u0027s not \"pretty poor security\u0027. maybe it\u0027s \"not informed user\"? " }, { "@type": "Comment", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2272751", "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2272751", "author": { "@type": "Person", "name": "mik", "image": "data:image/svg+xml,%3Csvg%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%20viewBox%3D%220%200%201024%201024%22%20style%3D%22background%3A%23c46a62%22%3E%3Cg%3E%3Ctext%20text-anchor%3D%22middle%22%20dy%3D%22.35em%22%20x%3D%22512%22%20y%3D%22512%22%20fill%3D%22%23ffffff%22%20font-size%3D%22700%22%20font-family%3D%22-apple-system%2C%20BlinkMacSystemFont%2C%20Roboto%2C%20Helvetica%2C%20Arial%2C%20sans-serif%22%3EM%3C%2Ftext%3E%3C%2Fg%3E%3C%2Fsvg%3E", "url": "https://www.skydiveforum.com/profile/18819-mik/" }, "dateCreated": "2006-09-29T22:34:23+0000", "text": "Remember me is never clicked\u0026#13; Session is always killed\u0026#13; and I have experienced this on a number of different computers - history file always shows email headers etc... \u0026#13; ***********************************************\u0026#13; I\u0027m NOT totally useless... I can be used as a bad example" }, { "@type": "Comment", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2272752", "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2272752", "author": { "@type": "Person", "name": "PhreeZone", "image": "https://www.skydiveforum.com/uploads/graphics/forum/users/profile_pictures/483_GTTemp10767314_large", "url": "https://www.skydiveforum.com/profile/1358-phreezone/" }, "dateCreated": "2006-09-30T06:57:25+0000", "text": "It took me a while to put together what you are saying. Basically the subject line gets included in the title tag for mail so that when you look at the top of the IE window it now says the subject.\u0026#13; Hotmail says \"MSN Hotmail - Message\" for the same thing. It does not put the subject in the title tag. GMail uses AJAX so none of the mail history appears in the history. Not sure about Yahoo or anything else.\u0026#13; Emails are unreadable still as long as you are clearing the cache after you log out, but the subject line is visable unless the history is cleared also. Not sure how big of a security issue it is, no one can read the emails but they can see the subject. Yesterday is history \u0026#13; And tomorrow is a mystery\u0026#13; Parachutemanuals.com" }, { "@type": "Comment", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2400232", "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2400232", "author": { "@type": "Person", "name": "CaptainOKaos", "image": "data:image/svg+xml,%3Csvg%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%20viewBox%3D%220%200%201024%201024%22%20style%3D%22background%3A%236288c4%22%3E%3Cg%3E%3Ctext%20text-anchor%3D%22middle%22%20dy%3D%22.35em%22%20x%3D%22512%22%20y%3D%22512%22%20fill%3D%22%23ffffff%22%20font-size%3D%22700%22%20font-family%3D%22-apple-system%2C%20BlinkMacSystemFont%2C%20Roboto%2C%20Helvetica%2C%20Arial%2C%20sans-serif%22%3EC%3C%2Ftext%3E%3C%2Fg%3E%3C%2Fsvg%3E", "url": "https://www.skydiveforum.com/profile/58675-captainokaos/" }, "dateCreated": "2006-12-05T07:06:33+0000", "text": "What service are you using to log on to DZ ?\u0026#13; AOL, MSN, Do you have Windows XP ?\u0026#13; With this I could better advice you on how to prevent this problem in the future. You\u0027re as wonderful as a slinkie!! NOT REALLY GOOD FOR ANYTHING BUT THEY BRING A SMILE TO YOUR FACE WHEN PUSHED DOWN THE STAIRS.\u0026#13; " }, { "@type": "Comment", "@id": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2400233", "url": "https://www.skydiveforum.com/forums/topic/62801-your-mail-is-available-via-ie-history/#comment-2400233", "author": { "@type": "Person", "name": "stratman05", "image": "data:image/svg+xml,%3Csvg%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%20viewBox%3D%220%200%201024%201024%22%20style%3D%22background%3A%237cc462%22%3E%3Cg%3E%3Ctext%20text-anchor%3D%22middle%22%20dy%3D%22.35em%22%20x%3D%22512%22%20y%3D%22512%22%20fill%3D%22%23ffffff%22%20font-size%3D%22700%22%20font-family%3D%22-apple-system%2C%20BlinkMacSystemFont%2C%20Roboto%2C%20Helvetica%2C%20Arial%2C%20sans-serif%22%3ES%3C%2Ftext%3E%3C%2Fg%3E%3C%2Fsvg%3E", "url": "https://www.skydiveforum.com/profile/31901-stratman05/" }, "dateCreated": "2006-12-08T19:33:29+0000", "text": "It\u0027s b/c the html tag has \"Dropzone.com: [Message Title]\" in it...\u0026#13; nothing else is viewable.\u0026#13; If they change it to remove the subject from the title tag, it will jsut day \"Dropzone.com\"." } ] } </script> <script type='application/ld+json'> { "@context": "http://www.schema.org", "publisher": "https://www.skydiveforum.com/#organization", "@type": "WebSite", "@id": "https://www.skydiveforum.com/#website", "mainEntityOfPage": "https://www.skydiveforum.com/", "name": "Skydiveforum.com", "url": "https://www.skydiveforum.com/", "potentialAction": { "type": "SearchAction", "query-input": "required name=query", "target": "https://www.skydiveforum.com/search/?q={query}" }, "inLanguage": [ { "@type": "Language", "name": "English (USA)", "alternateName": "en-US" } ] } </script> <script type='application/ld+json'> { "@context": "http://www.schema.org", "@type": "Organization", "@id": "https://www.skydiveforum.com/#organization", "mainEntityOfPage": "https://www.skydiveforum.com/", "name": "Skydiveforum.com", "url": "https://www.skydiveforum.com/", "logo": { "@type": "ImageObject", "@id": "https://www.skydiveforum.com/#logo", "url": "https://www.skydiveforum.com/uploads/monthly_2024_12/skydive-forum-logo.png.6766ed6b283bba61dd4b2df2814e3170.png" } } </script> <script type='application/ld+json'> { "@context": "http://schema.org", "@type": "BreadcrumbList", "itemListElement": [ { "@type": "ListItem", "position": 1, "item": { "@id": "https://www.skydiveforum.com/forums/", "name": "Forums" } }, { "@type": "ListItem", "position": 2, "item": { "@id": "https://www.skydiveforum.com/forums/forum/7-dropzone.com/", "name": "Dropzone.com" } }, { "@type": "ListItem", "position": 3, "item": { "@id": "https://www.skydiveforum.com/forums/forum/20-error-and-bug-reports/", "name": "Error and Bug Reports" } } ] } </script> <script type='application/ld+json'> { "@context": "http://schema.org", "@type": "ContactPage", "url": "https://www.skydiveforum.com/contact/" } </script> <!-- Filter plugin --> <script> $(document).ready(function() { $.each($('[data-filter-role="input"]'), function(key, search_box) { $(search_box).on("keyup", function(event) { $.each($('[data-filter-key="' + $(search_box).data("filter-key") + '"][data-filter-role="item"]'), function(item_key, item) { var item_value = $(item).data("filter-value").toLowerCase(); var search_str = $(search_box).val().toLowerCase(); if (item_value.indexOf(search_str) == 0 || search_str.indexOf(item_value) == 0 || item_value.indexOf(" " + search_str) > -1) { $(item).show(); var myElements = document.querySelectorAll(".dzfilteritem"); for (var i = 0; i < myElements.length; i++) { myElements[i].style.margin = "4px"; } } else { $(item).hide(); } lazyLoad.update(); // **please note the first lowercase L!** }); }); }); }); </script> <!-- Sticky Sidebar --> <script src="/custom_assets/stickyfloat/jquery.sticky.js"></script> <script> $(document).ready(function(){ $("#sticker").sticky({topSpacing:75}); }); </script> <!-- Category toggle --> <script> $(document).ready(function(){ $(".subcategory-toggle, .subcategory-toggle *").css('cursor','pointer').on('click', function(){ var top_element = $(this).closest(".dropzone_category_data_item"); var element = $(top_element).find('.dropzone_subcategory_container'); if( $(element).css('display') === 'none' ){ $(element).css('display', 'block'); $(top_element).find(".subcategory-toggle i.fa").removeClass('fa-plus-square').addClass('fa-minus-square'); } else{ $(element).css('display', 'none'); $(top_element).find(".subcategory-toggle i.fa").removeClass('fa-minus-square').addClass('fa-plus-square'); } return false; }); }); </script> <!-- Country Selector on Mobile --> <script type="text/javascript"> $(document).ready(function() { var urlmenu = document.getElementById('customselect'); if (urlmenu) { urlmenu.onchange = function() { window.location.replace( this.options[ this.selectedIndex ].value ); }; } }); </script> <!-- Country Select End --> <!-- Show more images on dropzone records Start --> <script type="text/javascript"> function switchVisible() { if (document.getElementById('preview_images_dz')) { if (document.getElementById('preview_images_dz').style.display == 'none') { document.getElementById('preview_images_dz').style.display = 'block'; document.getElementById('preview_images_all').style.display = 'none'; } else { document.getElementById('preview_images_dz').style.display = 'none'; document.getElementById('preview_images_all').style.display = 'block'; } } } </script> <!-- Show more images on dropzone records End--> <!-- Select2 Widget --> <script src="https://cdnjs.cloudflare.com/ajax/libs/chosen/1.8.7/chosen.jquery.min.js"></script> <script> $(document).ready(function() { console.log('core.global.global.includeJS: Mounting chosen widgets...'); $('.chosen-select').not('[name$="DEFAULT"]').chosen(); }); </script> <script type='text/javascript' src='/uploads/js/jquery.plusslider.js'></script> <script type='text/javascript' src='/uploads/js/jquery.easing.1.3.js'></script> <script type="text/javascript"> $(document).ready(function(){ $('#slider').plusSlider({ autoPlay: true, sliderEasing: 'easeInOutExpo', // Anything other than 'linear' and 'swing' requires the easing plugin paginationPosition: 'append', sliderType: 'slider' // Choose whether the carousel is a 'slider' or a 'fader' }); $('#slider2').plusSlider({ autoPlay: false, displayTime: 2000, // The amount of time the slide waits before automatically moving on to the next one. This requires 'autoPlay: true' sliderType: 'fader', // Choose whether the carousel is a 'slider' or a 'fader' width: 500, // Overide the default CSS width height: 250 // Overide the default CSS width }); $('#slider3').plusSlider({ sliderEasing: 'easeInOutExpo', // Anything other than 'linear' and 'swing' requires the easing plugin fullWidth: true, autoPlay: true, sliderType: 'slider' // Choose whether the carousel is a 'slider' or a 'fader' }); }); </script> <!--ipsQueryLog--> <!--ipsCachingLog--> <a data-controller="plugins.baseBackToTop" rel="nofollow" href="#top" id="back-to-top" title="Back to top"> <i class="fa fa-angle-up"></i> </a> </div></body></html>