:: Personal website of a Toronto web designer
Lately » Scrawls
PHP people, I thought I should pass this along.
Multiple Vulnerabilities in PHP fileupload. Several flaws found in the php_mime_split function that could be used by an attacker to execute arbitrary code.
:: Sasha, at 12:00 am on Thursday, 28. February 2002
Just set file_uploads to off in your php.ini and use ftp for uploads; anyway I don't trust any user when they're able to upload something.
:: Davor, at 03:19 pm on Thursday, 28. February 2002
Fix is already available.
http://www.php.net/downloads.php
Let's see Microsoft do that ;o)
:: vitez-koja, at 03:29 pm on Thursday, 28. February 2002
Come on Koja, MS is fast when it comes to fixing . . . :-)
:: Sasha, at 03:40 pm on Thursday, 28. February 2002
Useless scrawling facts:
Top 5 scrawlers:
(updated once a day)
556 Sasha
488 zoka
316 vitez-koja
235 Davor
58 mungos

