[listfiles] anomaly

This WebDNA talk-list message is from

2003


It keeps the original formatting.
numero = 50120
interpreted = N
texte = Couldn't figure out whether to label this an exploit, bug, oversight or what... so I settled on anomaly.Put this in a template:[listfiles] [filename] [/listfiles]And you will get a list of the files in your WebSTAR root folder. It doesn't matter where on your server you put the template, you will always get a list of files in the W* root.Clearly, there is some coder error here as I left out the required path= parameter. But since the docs clearly say that path= is a required parameter, shouldn't WebCat protect me from myself when I don't include a required parameter?I'm using w*4/macos9/wcat4.5, but what happens if a v5 sandbox user leaves out the required parameter? Do they get access to stuff they shouldn't?~joe -- ____________________________________________________________ Joseph D'Andrea ~ http://www.west21.com/ ~ JoeDan@West21.com WEST21.com Internet services for the 21st Century webhosting ~ co-location ~ wireless access WebCat and MGI database programming ____________________________________________________________------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ Associated Messages, from the most recent to the oldest:

    
  1. Re: [listfiles] anomaly (Rob Marquardt 2003)
  2. Re: [listfiles] anomaly (Gary Krockover 2003)
  3. Re: [listfiles] anomaly (Daniel Schutzsmith 2003)
  4. [listfiles] anomaly (Joe D'Andrea 2003)
Couldn't figure out whether to label this an exploit, bug, oversight or what... so I settled on anomaly.Put this in a template:[listfiles] [filename] [/listfiles]And you will get a list of the files in your WebSTAR root folder. It doesn't matter where on your server you put the template, you will always get a list of files in the W* root.Clearly, there is some coder error here as I left out the required path= parameter. But since the docs clearly say that path= is a required parameter, shouldn't WebCat protect me from myself when I don't include a required parameter?I'm using w*4/macos9/wcat4.5, but what happens if a v5 sandbox user leaves out the required parameter? Do they get access to stuff they shouldn't?~joe -- ____________________________________________________________ Joseph D'Andrea ~ http://www.west21.com/ ~ JoeDan@West21.com WEST21.com Internet services for the 21st Century webhosting ~ co-location ~ wireless access WebCat and MGI database programming ____________________________________________________________------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ Joe D'Andrea

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Interesting speed comparison .. (2003) Is this possible, WebCat2.0 and checkboxes (1997) A little syntax help (1997) Installation webCatalog (French speakers please help) (1998) I'm new be kind (1997) Error, 101 a DNS problem ? (1997) suffix mapping for NT? (1997) [Announce] Newest Commerce Site based on WebCatalog (1997) [OT] Looking for WC web dev help (2003) Fwd: checkboxes (2000) webten vs. webstar (1998) Searching (2005) [replaceChars] would be nice ... (1997) Mac Vs WindowsNT (1997) listfiles sort?! (2005) Using Applescript to process WebCatalog functions (1998) Extended [ConvertChars] (1997) WebCat2b13MacPlugIn - [showif][search][/showif] (1997) Max Record length restated as maybe bug (1997) question: webmerchant connection (1997)