Menu

#21 List of entry pages should be limited by root for security

open
nobody
5
2008-02-10
2008-02-10
Anonymous
No

I think it's better to create an option for administrators to limit list of pages which can be used as entry pages. Otherwise my example described in enable_perl_formatter bug will open a security hole, because anybody may add to the URL for example http://www.daemon.de/podwiki.pl?page=PodWiki;entry=PodWiki bypassing other pages which I want to be included always. Just a suggestion rather than actual bug.

Discussion


Log in to post a comment.

Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.