in reply to RE: Perl, CGI, and Security
in thread Perl, CGI, and Security

Thanks for the offer. I appreciate it.

Yeah, my comment about checking for a caret was pretty stupid. One of the security points that I want to harp on is that it is much safer to specify what you will allow as opposed to what you won't allow. All it takes is for the programmer to miss one naughty character and the game could be up.

Cheers,
Ovid