Re: WebCatalog 4.0 has been released!

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 32841
interpreted = N
texte = on 07.06.2000 18:47, John Peacock at JPeacock@UnivPress.com wrote:> Under existing 3.x sites, I can override _system variables_ like > [IPADDRESS] by simply adding &ipaddress=192.168.000.001 to the command > line. That is a big security hole, now plugged in 4.x. > > ...This is, IMNSHO, bad programming...Agree. I have a site where I did some navigtion stuff based on referer. Finally I came under pressure and solved some problems with this nasty technique in links: ?referer=index2.tpl Fine, this might kill the site if we go with 4.0 now - but it is not the fault of the program, when a developer discovers a bug and turns it into a feature... Peter ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://search.smithmicro.com/ Associated Messages, from the most recent to the oldest:

    
  1. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  2. Re: WebCatalog 4.0 has been released! (Chris Brandt 2000)
  3. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  4. Re: WebCatalog 4.0 has been released! (Mark Derrick 2000)
  5. Re: WebCatalog 4.0 has been released! (Peter Ostry 2000)
  6. Re: WebCatalog 4.0 has been released! (Alex McCombie 2000)
  7. Re: WebCatalog 4.0 has been released! (Joseph D'Andrea 2000)
  8. Re: WebCatalog 4.0 has been released! (John Peacock 2000)
  9. Re: WebCatalog 4.0 has been released! (Joseph D'Andrea 2000)
  10. Re: WebCatalog 4.0 has been released! (John Butler 2000)
  11. Re: WebCatalog 4.0 has been released! (Alex McCombie 2000)
  12. Re: WebCatalog 4.0 has been released! (John Peacock 2000)
  13. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  14. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  15. Re: WebCatalog 4.0 has been released! (Mark Derrick 2000)
  16. Re: WebCatalog 4.0 has been released! (Paul Uttermohlen 2000)
  17. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  18. Re: WebCatalog 4.0 has been released! (Mark Derrick 2000)
  19. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  20. Re: WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  21. Re: WebCatalog 4.0 has been released! (Mike Heininger 2000)
  22. Re: WebCatalog 4.0 has been released! (Peter Ostry 2000)
  23. Re: WebCatalog 4.0 has been released! (Jesse Proudman 2000)
  24. WebCatalog 4.0 has been released! (Jay Van Vark 2000)
  25. WebCatalog 4.0 has been released! (Jay Van Vark 2000)
on 07.06.2000 18:47, John Peacock at JPeacock@UnivPress.com wrote:> Under existing 3.x sites, I can override _system variables_ like > [ipaddress] by simply adding &ipaddress=192.168.000.001 to the command > line. That is a big security hole, now plugged in 4.x. > > ...This is, IMNSHO, bad programming...Agree. I have a site where I did some navigtion stuff based on referer. Finally I came under pressure and solved some problems with this nasty technique in links: ?referer=index2.tpl Fine, this might kill the site if we go with 4.0 now - but it is not the fault of the program, when a developer discovers a bug and turns it into a feature... Peter ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://search.smithmicro.com/ Peter Ostry

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

'page impression' techniques for banner ads (1999) [isfile] ? (1997) [OrderFile] being testy (2000) Web Catalog 2 demo (1997) Search Combining Problem (2004) New Plug-in and Type 11 errors (1997) Total found of each unique field (2003) Robots fill event log (1997) About WebCatalog and iTools 7 (2003) convertWords... NEW (2001) MySQL and Numbers (2005) passing search criteria (1997) Windows-user? (2000) WebCat2b15MacPlugin - [protect] (1997) WebCat2b15MacPlugin - showing [math] (1997) orders being printed (1998) price totals (2003) [CART] (1997) [WebDNA] COMMITDATABASE in linux unix 64bits FastCGI version 8.6 (2020) redirect with frames (1997)