#!/usr/bin/perl -Tw use CGI; use CGI::Carp qw(fatalsToBrowser); my $cgi = new CGI; print $cgi->header; my $message = $cgi->param('message'); my $figlet = ""; if ($message) { $figlet = "
" . 
    `cd figlet/figlet22; ./figlet $message` . 
    "
\n"; } print <<"END_HTML"; cgi figlet taint one

cgi figlet taint 1

With Taint mode on (-T), this evil script won't run!
What is your message?
$figlet
END_HTML