Comment 5 for bug 1396564

Revision history for this message
Hugh Davenport (hugh-davenport) wrote :

Hi,

Yeh, cli scripts are save enough. I mean while the command is running any user on the system it is running on can see the arguments (and a user could automatically scrape these), so the new password could be leaked to users on the host system. Security on the web side shouldn't be an issue as done directly with mahara codebase.

So yeh, save enough.

Cheers,

Hugh