Информационная безопасность
[RU] switch to
English Version



Дополнительная информация

  Многочисленные ошибки в PHP (multiple bugs)

  MOPB-08-2007:PHP 4 phpinfo() XSS Vulnerability (Deja-vu)

  PHP XSS exploit in phpinfo()

  PHP 4.3.2 released

  ISS Brief: Remote Compromise and Denial of Service Vulnerability in PHP

From:Sverre H. Huseby <shh_(at)_THATHOST.COM>
Date:2 июня 2003 г.
Subject:PHP Trans SID XSS (Was: New php release with security fixes)

It also fixes the following, which wasn't mentioned in the summary (or
elsewhere, as far as I can see):

 "Cross-site Scripting in PHP's Transparent Session ID Support"
  http://shh.thathost.com/secadv/2003-05-11-php.txt


Sverre.

--
shh@thathost.com
http://shh.thathost.com/

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server