RE: Access from a local file

downie - <downgeoff2@xxxxxxxxxxx>

> > One of the reasons is to prevent malicious users from
> including file:// urls in an external webpage.  With file://
> urls, a webpage could be designed to test for the existence
> of local files on your computer. 
> How? Same origin policy prevents an external website from
> accessing any local files directly. And the 'onload'
> trick detailed at
> doesn't work (FF2 OSX anyway) because the images or
> Iframes never load from local resources at all.
> Do you have a Proof of Concept?

No because, as you say, it is prevented.  I was explaining 
WHY (or at least some reasons why) it is prevented.  In
other words, I was explaining why such a policy exists in
firefox.  However, I believe that you can do these things
in Internet Explorer...


