Ovidiu Predescu wrote:
> On 6/17/02 11:22 PM, "Christian Haul" <[EMAIL PROTECTED]>
> wrote:


> I actually like the way variables are automatically bound in WebObjects,
> where you have to explicitly define the automatic binding, by mapping an
> instance variable to a form parameter. I was thinking to follow a similar
> pattern, and have a way to specify that a given local variable in a function
> is to be bound to a form parameter. In WebObjects this association is
> totally under the control of the programmer, and the same way should be done
> in Cocoon.

XMLForm is already doing it.


> 
> Could this be a potential security problem?

I guess Christian suggests that a malicious attacker can pass parameters 
which will modify undesired parts of the model.





> 
> Greetings,
> Ovidiu
> 
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, email: [EMAIL PROTECTED]
> 
> 



-- 

-= Ivelin =-


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, email: [EMAIL PROTECTED]

Reply via email to