tomcat-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Ignacio J. Ortega" <na...@siapi.es>
Subject RE: cvs commit: jakarta-tomcat-connectors/jk/native2/server/isapi jk_isapi_plugin.c
Date Thu, 06 Feb 2003 21:30:59 GMT
Mladen, Larry,

> I think this is something that to some degree is a necessary
> evil.  Hopefully I will be able to tell more when I can get
> back into the code.  The trick is allowing this "okay" URL
> to succeed while preventing malicious uses of "%2F" from also
> succeeding.
> 

Doh!!, just reviewed what i did, and of course found the right and
stupid solution..

Please review, i think i've found the obvious as ever :), i'll commit
soon.. ( in 2003 now i hope :)

Saludos, 
Ignacio J. Ortega 


Mime
View raw message