Well maybe the specs should change. If you're testing for valid paths, but unable or unwilling to determine the originator OS, or whether the file exists, why validate at all except to remove things which 'break' your code. Management might as well ask you for a module that remotely checks that the user has wiped his arse and washed hands before entering 'tainted' data.
In reply to Re:^3 Filepath validation and untainting
by submersible_toaster
in thread Filepath validation and untainting
by hardburn
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |