Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: Re: Perl / Oracle Vuln. New or Not?

Re: Perl / Oracle Vuln. New or Not?

From: Simon Kenton <simon_k_at_MAILANDNEWS.COM>
Date: Fri, 8 Dec 2000 15:48:17 -0500

As a couple of people (on and off the list) have stated it is the job of the
perl programmer to handle these errors gracefully. I agree with this 100% and
in this case 'foo.pl' will be fixed so that it no longer divulges this
information. My point in posting this here, and potentially sending it to the
maintainers of the DBI/DBD code is that this is not the only implementation of
the Perl DBI/DBD modules that is installed using these defaults, and by
default gives out way too much information when it encounters an error
situation.

I am going to drop a short note to the DBI users lists, and be done with the
matter.

-Simon

------------------------------
   Simon Kenton
   Folk Hero To The Stars
------------------------------
Received on Dec 10 2000

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos