Jump to content
Arrow

WWW Remote Control

Recommended Posts

Tjod

Nice Idea, but everyone should be very careful to whom they give admin access to the RS.

Everyone who knows the Admin password has complete control over the RS and over all DVBViewer instances in the network.

And there is a chance that it is possible to get control over the PC, where the RS is running as well.

The RS is designed to work in a LAN environment. If you allow access for everyone in the internet via port forwarding, the user name and password are your only line of defence.

Share this post


Link to post
Arrow

The access data are stored only in browser cookies.

Share this post


Link to post
Tjod

It is most likely that this is true.
But never the less the user has to trust you this is true and that there is no Cross-Site-Scripting (XSS) vulnerability in you code.
Which would allow other people to access the cookie and there for to the RS Web interface.

Share this post


Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...