httpd-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Roy T. Fielding" <field...@kiwi.ICS.UCI.EDU>
Subject fixing %2f
Date Thu, 15 May 1997 22:07:12 GMT
Just removing the check would be bad.  It was originally put in to
fix a security problem with %2f being used to bypass directory auth
and /..  checks.

....Roy

Mime
View raw message