#23513 [Opn->Csd]: security flaw: info posted on newsgroup

From: Date: Tue, 06 May 2003 20:23:16 +0000
Subject: #23513 [Opn->Csd]: security flaw: info posted on newsgroup
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-39173@lists.php.net to get a copy of this message
ID: 23513 Updated by: rasmus@php.net Reported By: jlindsey at guarded dot net -Status: Open +Status: Closed Bug Type: Feature/Change Request Operating System: linux PHP Version: 4.3.1 New Comment: I have added a better disclaimer reminding people to use the save feature and edit their report for sensitive data before sending it in if they are worried about that. Previous Comments: ------------------------------------------------------------------------ [2003-05-06 14:00:04] jlindsey at guarded dot net After php compiles and runs its tests, there is an option to send the information to the php developers. That option does not make it clear that the information will be posted on a public newsgroup, php.qa Yaaaaay! All the world can see detailed config info of one of my company's internal machines, as well as other swell info (like my email address). Thanks php guys...that's great security! Seriously...who thought this was a good idea? Stop! Stop it now! ------------------------------------------------------------------------ -- Edit this bug report at http://bugs.php.net/?id=23513&edit=1

« previous php.bugs (#39173) next »