由买买提看人间百态

boards

本页内容为未名空间相应帖子的节选和存档,一周内的贴子最多显示50字,超过一周显示500字 访问原贴
BuildingWeb版 - how to avoid security holes for perl CGI code using checkbo (转载)
相关主题
perl cgi.pm checkbox reset question (转载)一个perl初级问题
CGI question: prefilled value in webpage (转载)**********Help Needed! 怎样在最短的时间内学会CGI??急!!!************
reset button and checkbox question in the webpage怎么样在个人主页上运行CGI?
[转载] Per/CGI 表单:两类元素如何绑定?what is cgi?
perl cgi param( ) question[转载] Perl CGI and Excel files
[转载] Perl for programmers(10): A template for CGI file那位大虾知道那里有免费空间支持ASP,PHP,CGI或PERL?
perl cgis: how to send back frame webpage?谁推荐一个CGI/PERL写的论坛程序?最好是汉化过的
Help me with a stupid question.\\\\\\\\\\\\\\\\A question about CGI//////////////
相关话题的讨论汇总
话题: cgi话题: perl话题: checkbox话题: checkbo话题: my
进入BuildingWeb版参与讨论
1 (共1页)
w*s
发帖数: 7227
1
【 以下文字转载自 Linux 讨论区 】
发信人: wds (净洗前尘,从头再来), 信区: Linux
标 题: how to avoid security holes for perl CGI code using checkbox ?
发信站: BBS 未名空间站 (Thu Apr 18 19:01:05 2013, 美东)
Don't know how to describe this clearly,
i have a simple perl CGI code, running with lighttpd.
it has checkbox, if it's set, when you click "submit".
it will trigger my code in the background,
`set_my_value.exe 1`.
if no check that checkbox,
`set_my_value.exe 0`.
Now when i run Rapid7 nexpose, which is a security check application,
it can call my "set_my_value" directly.
So even i didn't check/uncheck the checkbox.
It's setting the values.
Seems lighttpd doesn't support perl taint mode (someone correct me if not
the case), i don't know what to do now.
Any help appreciated.
Thanks !
1 (共1页)
进入BuildingWeb版参与讨论
相关主题
\\\\\\\\\\\\\\\\A question about CGI//////////////perl cgi param( ) question
Help on View DB talbe using Perl CGI[转载] Perl for programmers(10): A template for CGI file
[转载] How many version of Perl/CGI are there?perl cgis: how to send back frame webpage?
求助: 关于Perl and JavascriptHelp me with a stupid question.
perl cgi.pm checkbox reset question (转载)一个perl初级问题
CGI question: prefilled value in webpage (转载)**********Help Needed! 怎样在最短的时间内学会CGI??急!!!************
reset button and checkbox question in the webpage怎么样在个人主页上运行CGI?
[转载] Per/CGI 表单:两类元素如何绑定?what is cgi?
相关话题的讨论汇总
话题: cgi话题: perl话题: checkbox话题: checkbo话题: my