[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] Raq cgi-bin Security Hole
- Subject: Re: [cobalt-users] Raq cgi-bin Security Hole
- From: Gerald Waugh <gwaugh@xxxxxxxxxxxxxxxxxxxxxxx>
- Date: Mon Mar 4 21:21:03 2002
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
On Tue, 05 Mar 2002, tolgaraq wrote:
> When I use getright and enter url of any file in
> cgi-bin getright succesfuly downloads it. And your cgi
> files is open to anyone who knows it's file name.
>
> Anyone know how to prevent it?
That's one of the reasons all my CGIs are chmod 711,
I know everyone likes to use 755, and that's what you get anyone can read them.
--
Gerald Waugh