Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Vulnerability Development mailing list archives

Re: Perl / Oracle Vuln. New or Not?
From: Simon Kenton <simon_k () MAILANDNEWS COM>
Date: Fri, 8 Dec 2000 15:48:17 -0500

As a couple of people (on and off the list) have stated it is the job of the
perl programmer to handle these errors gracefully.  I agree with this 100% and
in this case 'foo.pl' will be fixed so that it no longer divulges this
information.  My point in posting this here, and potentially sending it to the
maintainers of the DBI/DBD code is that this is not the only implementation of
the Perl DBI/DBD modules that is installed using these defaults, and by
default gives out way too much information when it encounters an error
situation.

I am going to drop a short note to the DBI users lists, and be done with the
matter.

-Simon

------------------------------
   Simon Kenton
   Folk Hero To The Stars
------------------------------


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]