security concern with curl

From: Date: Fri, 09 Aug 2002 20:10:28 +0000
Subject: security concern with curl
Groups: php.general 
Request: Send a blank email to php-general+get-111886@lists.php.net to get a copy of this message
Hi everybody, I am planing to install oasis a management tool for ads. This software requires to install curl http://curl.haxx.se/ My concern is that this would open a serious security whole on my server. Curl is stating out that: Curl is a command line tool for transferring files with URL syntax, supporting FTP, FTPS, HTTP, HTTPS, GOPHER, TELNET, DICT, FILE and LDAP. Curl supports HTTPS certificates, HTTP POST, HTTP PUT, FTP uploading, kerberos, HTTP form based upload, proxies, cookies, user+password authentication, file transfer resume, http proxy tunneling and a busload of other useful tricks. So I fear that someone would be able to tranfer files on / off my server. Has anybody some experiance on that, or can give a comment on that? Thanx for any hint, Andy

« previous php.general (#111886) next »