Vulnerability Development mailing list archives

jsp malicious coding


From: Bruno Cardoso <brunoc () EASYNET COM BR>
Date: Tue, 29 Aug 2000 16:02:03 -0300

I'm not really into jsp, but something came up and I would appreciate
any insights on this matter.
Is there any kind of malicious coding on jsp? Something like the fopen
function on php. I'm really concerned about this because I have some
clients using jps over Apache and I wouldn't enjoy any kind of malicious
activity such as gettin' my /etc/passwd or /etc/shadow via jps
scripting...

Any ideas?? :)

Regards
--
Bruno Cardoso
Easynet Internet Services
Fingerprint C3DF 809E C00B D925 71A8  90BA C75D D0B8 5D46 D4FD


Current thread: