Re: PHP Directory Transversal

From: David M. Zendzian (dmz_at_dmzs.com)
Date: 03/10/05

  • Next message: Cedric Foll: "Re: PHP Directory Transversal"
    Date: Thu, 10 Mar 2005 10:02:02 -0800
    To: Andres Molinetti <andymolinetti@hotmail.com>
    
    

    He probably has php in 'safe-mode'.

    Check this: http://us4.php.net/features.safe-mode

    Andres Molinetti wrote:

    > Hi,
    >
    > Working on a Web app testing...I have found that the uses the
    > so-vulnerable method of including files requested by php parameters:
    >
    > www.example.com/static.php?page=hello.htm
    > (htm files are in /templates dir)
    >
    > A the page in the parameter is requested statically, I did a
    > www.example.com/static.php?page=../static.php and I got that page
    > source code.
    >
    > Therefore, I tried doing a
    > www.example.com/static.php?page=../../../../../../etc/passwd
    > but I get an error saying that file doesn't exist.
    >
    > I user the same source code in my server, and I could retrieve the
    > file...what can be happening? I don't think it is under a chroot jail...
    >
    > I'm working with Apache 2.0.48 and PHP 4.3.4
    > and the real server has Apache 2.0.52 an PHP 4.3.9....
    >
    > Thanks in advance,
    > Andy
    >
    > _________________________________________________________________
    > Descarga gratis la Barra de Herramientas de MSN
    > http://www.msn.es/usuario/busqueda/barra?XAPID=2031&DI=1055&SU=http%3A//www.hotmail.com&HL=LINKTAG1OPENINGTEXT_MSNBH
    >
    >
    >
    >
    >


  • Next message: Cedric Foll: "Re: PHP Directory Transversal"

    Relevant Pages

    • Re: Do I need Pro or Dev Edition of .NET ?
      ... I have contacted the Dev company to ask, ... I do not have access to the source code (and no ide to view it in ... Its a Web App connecting to a SQL 2000 backend. ... I'm a VB / SQL developer with a bit of ASP, ...
      (microsoft.public.dotnet.general)
    • Re: Vuln Scanner for Web App Source Code
      ... Vuln Scanner for Web App Source Code ... cross site scripting, ect. ... Vulnerability Scanner for finding faults in the actual Source Code of the ...
      (Security-Basics)
    • Source code review/scanner
      ... source code and web app code created by our developers. ... with less than optimal security or coding knowledge. ...
      (Pen-Test)
    • RE: Source code review/scanner
      ... Subject: Source code review/scanner ... source code and web app code created by our developers. ...
      (Pen-Test)