[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] Warning -DO NOT DOWNLOAD GETRIGHT-
- Subject: Re: [cobalt-users] Warning -DO NOT DOWNLOAD GETRIGHT-
- From: "Jelmer Jellema" <cobalt@xxxxxxxxxxxxxxx>
- Date: Fri Mar 8 22:45:01 2002
- Organization: Spin in het Web (www.spininhetweb.nl)
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
From: "Wayne Sagar"
> This is an addendum to the other message stating that the Getright
download
> "utility" creates a security breech in cgi files. Well, this concerned me
so
> I downloaded it and installed it. I've got all my cgi files set to
non-world
> readable and all it would do was excicute the scripts and show the
results..
> not dangerous as this is all available via view/source anyway..
I may be asking a stupid question here, but what is Getright? Is it an util
you use at home to access your cobalt, or is it something you install on
your cobalt. If the first, how the hell would it be able to download .cgi
sourcecode if the appache server is the one responsible for running .cgi
scripts?
Jelmer