… | |
… | |
393 | cases, but often paths are embedded indirectly, so you might have to use a |
393 | cases, but often paths are embedded indirectly, so you might have to use a |
394 | I<dirty> string replacement. |
394 | I<dirty> string replacement. |
395 | |
395 | |
396 | =back |
396 | =back |
397 | |
397 | |
|
|
398 | =head1 SECURITY CONSIDERATIONS |
|
|
399 | |
|
|
400 | The urlader executable itself does not support setuig/setgid operation, or |
|
|
401 | running with elevated privileges - it does no input sanitisation, and is |
|
|
402 | trivially exploitable. |
|
|
403 | |
398 | =head1 AUTHOR |
404 | =head1 AUTHOR |
399 | |
405 | |
400 | Marc Lehmann <schmorp@schmorp.de> |
406 | Marc Lehmann <schmorp@schmorp.de> |
401 | http://home.schmorp.de/ |
407 | http://home.schmorp.de/ |
402 | |
408 | |