Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add a whitelist of commands that a person can run #1

Open
Hydriz opened this issue Nov 10, 2012 · 0 comments
Open

Add a whitelist of commands that a person can run #1

Hydriz opened this issue Nov 10, 2012 · 0 comments
Assignees
Milestone

Comments

@Hydriz
Copy link
Collaborator

Hydriz commented Nov 10, 2012

Leaving the $wgHostStatsCommands open to all kinds of commands to run is too risky, we should have a whitelist to prevent accidental leakage of information regarding a server.

@ghost ghost assigned Hydriz Nov 10, 2012
Hydriz added a commit that referenced this issue Nov 11, 2012
This commit attempts to do a check on whether the command is safe
to excute before really running the command.

Not a fix, but an initial checkin for development testing purposes.
Hydriz added a commit that referenced this issue Nov 12, 2012
This reverts commit 6a19864.

Conflicts:

	SpecialHostStats.php
Hydriz added a commit that referenced this issue Nov 12, 2012
Hydriz added a commit that referenced this issue Nov 12, 2012
This commit attempts to do a check on whether the command is safe
to excute before really running the command.

Not a fix, but an initial checkin for development testing purposes.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant