Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHP-Address Remote File Include Vulnerability

Solution:
Reportedly, exploitation of this type of vulnerability is not possible unless both 'allow_url_fopen' and 'register_globals' are enabled in the local site PHP configuration.

It is good practice to disable any unneeded options.

This issue has been addressed in version 0.2f of PHP-Address.


PHP-Address PHP-Address 0.2 e







 

Privacy Statement
Copyright 2009, SecurityFocus