Because a couple good hearted but under-developed Perl programmers have made some rather insecure scripts available to the world we now have zillions of formmail.pl programs around the net.
If PM does do anything about illustrating transmogrification of standard insecure scripts into better scripts (from the security point of view anyway) formmail.pl or other such ubiquitious scripts with known exploits could be good candidates as patients.
This way it might be possible to see some of the secure scripts filter out into the world replacing the swiss-cheese versions.
I admire the good heartedness of the guys that released these commonly used scripts. But I wouldn't want my website on a server hosting any of these.
Claude
In reply to Re: Re: Re: A rumination on finding secure scripts, versus rolling-your-own
by Xxaxx
in thread A rumination on finding secure scripts, versus rolling-your-own
by Hero Zzyzzx
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |