[horde] imp's new trailer hook
Michael M Slusarz
slusarz at horde.org
Mon Sep 9 17:38:49 UTC 2013
Quoting Gary <witscher at gmail.com>:
> The code I quoted was just experimental code, so I could try and see
> what values I would be dealing with. The code I'm using reads in
> fortune files from disk, world readable, owner writable. Hopefully
> that won't create the security hole that you speak of. Perhaps you
> have at hand a link to documentation regarding these types of
> security holes? If so, I'd like to take a look at it.
See, e.g., XSS (http://en.wikipedia.org/wiki/Cross-site_scripting)
michael
___________________________________
Michael Slusarz [slusarz at horde.org]
More information about the horde
mailing list