Re: [Fwd: CERT Advisory CA-2002-05 Multiple Vulnerabilities in PHP fileupload]

From: Tim Haynes (usenet@stirfried.vegetable.org.uk)
Date: 02/28/02


From: Tim Haynes <usenet@stirfried.vegetable.org.uk>
Date: Thu, 28 Feb 2002 09:38:31 +0000

Luke Vogel <luke@bell-bird.com.au> writes:

> Check your web servers people!

Yeah, I noticed that one too.. ;8)

Funny, 'cos at the last job (yes, I've migrated in the last ~week), one of
the things on which I was working was a file-uploader where I used PHP for
the main grunt of getting the file from browser to server.. <chuckle> ;8)

~Tim

-- 
  09:37:32 up 113 days, 11:21,  2 users,  load average: 0.24, 0.31, 0.34
piglet@stirfried.vegetable.org.uk |Rushing onwards, tracing the chains,
http://piglet.is.dreaming.org     |Chasing the days, chasing the days.



Relevant Pages

  • [Fwd: CERT Advisory CA-2002-05 Multiple Vulnerabilities in PHP fileupload]
    ... Multiple vulnerabilities exist in the PHP scripting language. ... installed on a variety of web servers, including Apache, IIS, Caudium, ... Updates to the PHP packages are in progress ...
    (comp.os.linux.security)
  • Re: System apparently unable to cope with loading
    ... > I have a customer who is having problems when their Windows ... > levels at which PHP should be able to cope? ... > The web servers are each dual-processor Intel machines running IIS5 ... you have to remember that with each "hit" the PHP page must be ...
    (alt.php)
  • Re: System apparently unable to cope with loading
    ... > I have a customer who is having problems when their Windows ... > levels at which PHP should be able to cope? ... > The web servers are each dual-processor Intel machines running IIS5 ... you have to remember that with each "hit" the PHP page must be ...
    (comp.lang.php)
  • Re: Using POST to send bitmap image with Java
    ... posting the image to a URL that is a PHP script. ... When I was looking at this I thought that this really made more sense to use a PUT method to post the image, but the guy working on the PHP side insisted on using a POST method. ... Not all web servers support or is configured to allow PUT, ... Posting a message to a bulletin board, newsgroup, mailing list, ...
    (comp.lang.java.programmer)
  • Hawaii D3 Shop now open
    ... telecommute who might be looking for a great D3 code banger please let me ... I am very capable with everything from green screen to php, cgi-bin, d3 to ... Have integrated D3 with web servers for ... server and client gui using a variety of tools on ...
    (comp.databases.pick)