This is a hole in the Uniobjects security. A user who has a valid username
and password to access a Uniobjects application can write his own VB program
to do almost anything; modify files, write VOC entries, upload, compile and
run programs.

Using o/s security is fine but the user will have unrestricted access to all
files that the application would normally use. This seems to leave UV/Udt
systems that enable Uniobjects wide open to hacking. Try it!


Martin Phillips
Ladybridge Systems
17b Coldstream Lane, Hardingstone, Northampton NN4 6DB
+44-(0)1604-709200
-------
u2-users mailing list
[email protected]
To unsubscribe please visit http://listserver.u2ug.org/

Reply via email to