[Melbourne-pm] Security hole??

David Dick david_dick at iprimus.com.au
Sun Jan 29 01:27:32 PST 2006



Raphael Alla wrote:
> *Let's condider the following perl cgi script. I cannot find a practical 
> way to use it as a security hole. Any suggestion?
> 
> *#!/usr/bin/perl
> my $sub = $ENV{QUERY_STRING};
> &{$sub};

maybe i'm just a little tired after the weekend, but this script would 
appear to not do anything apart from cause an error. What are you trying 
to achieve?



More information about the Melbourne-pm mailing list