Also, if the program is poorly written it could reveal the value of that variable as well
Hi duff, do you have an example to show a badly written script?
One way I can think of is when the script is invoked as a get, and the next page it generates has http://site.com/cgi-bin/script.pl?seron=blahblah in the URL.