[horde] imp's new trailer hook

Michael M Slusarz slusarz at horde.org
Mon Sep 9 17:38:49 UTC 2013


Quoting Gary <witscher at gmail.com>:

> The code I quoted was just experimental code, so I could try and see  
> what values I would be dealing with. The code I'm using reads in  
> fortune files from disk, world readable, owner writable. Hopefully  
> that won't create the security hole that you speak of. Perhaps you  
> have at hand a link to documentation regarding these types of  
> security holes? If so, I'd like to take a look at it.

See, e.g., XSS (http://en.wikipedia.org/wiki/Cross-site_scripting)

michael

___________________________________
Michael Slusarz [slusarz at horde.org]



More information about the horde mailing list