X-Recipient: archive-cygwin AT delorie DOT com X-SWARE-Spam-Status: No, hits=-2.0 required=5.0 tests=AWL,BAYES_00,DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,FREEMAIL_FROM,RCVD_IN_DNSWL_LOW,T_TO_NO_BRKTS_FREEMAIL X-Spam-Check-By: sourceware.org MIME-Version: 1.0 Reply-To: noloader AT gmail DOT com In-Reply-To: References: Date: Sun, 12 Dec 2010 11:50:29 -0500 Message-ID: Subject: Re: Suspicious EXE named "[.exe" in c:\cygwin\bin? From: Jeffrey Walton To: cygwin AT cygwin DOT com Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm Precedence: bulk List-Id: List-Unsubscribe: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com "[1 =3D 1]" gets an Internal Server error. The PHP is probably trying to cough up everything.... On Sun, Dec 12, 2010 at 11:44 AM, Jeffrey Walton wrote: > BTW, Since the web interface tried to interpret my input ("Invalid > regular expression search string"), this database is probably > vulnerable to a SQL injection. > > GNU just got pwn'd > > Has anyone tried thew 1 =3D1 trick lately? Are passwords residing in > another table? > > Jeff > > Am 12.12.2010 12:29, schrieb Jeffrey Walton: >> Hi Guys, >> >> The executable name is suspicious at best. Attempting to search > > On the contrary, it's a standard utility mentioned in IEEE Std 1003.1. > >> http://cygwin.com/packages/ results in an error "Invalid regular >> expression search string: `[.exe`". Quotes, double quotes, and back >> ticks do not help during the search. > > Problem of the web interface. > >> What is this program supposed to do? > > The same as "test", except that "[" will expect and consume the closing b= racket. > =A0Used in scripting with shells that don't have [ built-in. > > Details with "man test" ("man [" is missing on my Cygwin system), or in b= ash > with "help [". > > -- > Matthias Andree > > -- > Problem reports: =A0 =A0 =A0 http://cygwin.com/problems.html > FAQ: =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 =A0 http://cygwin.com/faq/ > Documentation: =A0 =A0 =A0 =A0 http://cygwin.com/docs.html > Unsubscribe info: =A0 =A0 =A0http://cygwin.com/ml/#unsubscribe-simple > -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple