Juan Carlos Castro y Castro writes:

> Sqwebmail's CGI executable has to be run as setuid root, which is against good
> security behavior.

In that case, I presume that you have removed the "login", "passwd", and
"su" commands from your UNIX box, because they're setuid root, and they
obviously violate "good security behavior".  If you have procmail
installed, you better remove that too, if you have it setuid root.

-- 
Sam

Reply via email to