logo       

DM Numeric custom script monitor: msg#00593

sysutils.tivoli.general

Subject: DM Numeric custom script monitor





Hallo,


>#!/bin/sh
>`cat /my_dir/my_dir/my_file`

is the use of backticks really intended here? This is mostly dangerous!
The contents of the file is executed as a shell command, and
depending on the file permissions anyone might write to the file
(imagine someone uses echo 'rm -fr /* > /my_dir/my_dir/my_file)

Tschau...Thomas
--
"Do you wanna be a legend or a passing footprint on the sands of time?"

Senior Consultant, Tivoli Certified Enterprise Consultant + Instructor
santix AG, www.santix.de, info-/JKUMw0Y9jazQB+pC5nmwQ@xxxxxxxxxxxxxxxx, fon
+49-89-321506-0, fax -99
Weihenstephaner Str. 4, D-85716 Unterschleissheim, GSM +49-171-4416678




<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise