"be consistent" | |
PerlMonks |
Re^2: The importance of avoiding the shellby jhourcle (Prior) |
on Sep 25, 2014 at 11:53 UTC ( [id://1101961]=note: print w/replies, xml ) | Need Help?? |
Notice how in my first test, I called sh? Some OSes (these examples were from a MacOS X box) use bash for sh. You should run the tests and check if you're vulnerable. Don't just think 'oh, it won't happen to me, I'm using ksh', as perl may still send to a vulnerable sh:
In Section
Meditations
|
|