I wouldn't even trust a regex to 'take out the ..' either as you could probably just do /etc/passwd instead. Yes, you could also regex off ^/ as well, but you'll be doing stuff like that as long as that script exists.
Also consider using pathinfo or a mod_perl handler because it looks a little nicer :)
In reply to Re: security issues with an index.pl-type thing...
by DrZaius
in thread security issues with an index.pl-type thing...
by derek3000
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |