[CLUE-Tech] Web script languages and safety

Jeremiah Stanley lists at miah.org
Tue Aug 12 19:34:08 MDT 2003


> I also know, for example, that PHP had a pretty serious vulnerability
> WRT to web supplied variables.

Any language, if you don't check the variables passed to it, is going to
have this problem. It is not a language problem but an implementation
problem. If you want to trust what someone puts in POST and GET request,
you be my guest. But don't come crying to me when the big kids take your
ice cream cone.

-- 
JStanley <miah at miah.org>
http://www.slavewage.com/




More information about the clue-tech mailing list