#23513 [Opn->Csd]: security flaw: info posted on newsgroup
| From: | rasmus@php.net | Date: | Tue, 06 May 2003 20:23:16 +0000 |
| Subject: | #23513 [Opn->Csd]: security flaw: info posted on newsgroup | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-39173@lists.php.net to get a copy of this message | ||
ID: 23513
Updated by: rasmus@php.net
Reported By: jlindsey at guarded dot net
-Status: Open
+Status: Closed
Bug Type: Feature/Change Request
Operating System: linux
PHP Version: 4.3.1
New Comment:
I have added a better disclaimer reminding people to use the
save feature and edit their report for sensitive data before sending it
in if they are worried about that.
Previous Comments:
------------------------------------------------------------------------
[2003-05-06 14:00:04] jlindsey at guarded dot net
After php compiles and runs its tests, there is an option to send the
information to the php developers. That option does not make it clear
that the information will be posted on a public newsgroup, php.qa
Yaaaaay! All the world can see detailed config info of one of my
company's internal machines, as well as other swell info (like my email
address).
Thanks php guys...that's great security!
Seriously...who thought this was a good idea? Stop! Stop it now!
------------------------------------------------------------------------
--
Edit this bug report at http://bugs.php.net/?id=23513&edit=1