I want to call a shell script from one of my perl scripts. There are some arguments I want to pass to the script. To be more precise, I have a user input
for $query and I have the following statement
# Run script
system("$dir/searchscript.sh");Is that secure? (Well, probably not...) How would I have to "escape" $query so that the command becomes more secure.
Thanks a lot.
Ivan
-----
Iyengar Yoga Resources / GT Plugins
for $query and I have the following statement
Code:
$ENV{'QUERY_STRING'} = "query=$query"; # Run script
system("$dir/searchscript.sh");
Thanks a lot.
Ivan
-----
Iyengar Yoga Resources / GT Plugins