Bug #14984: php parser problem, with // comment, can reveal script

From: Date: Fri, 11 Jan 2002 00:03:01 +0000
Subject: Bug #14984: php parser problem, with // comment, can reveal script
Groups: php.dev 
Request: Send a blank email to php-dev+get-76555@lists.php.net to get a copy of this message
From: dd@asi.fr Operating system: windows and other PHP version: 4.0.6 PHP Bug Type: Scripting Engine problem Bug description: php parser problem, with // comment, can reveal script Hi all, I found this bug randomly as all other, it cause me a php html parser to crash. try a script like this : <?php // eval('?>'.$tmp); // eval('>'.$tmp); $coucou=''; $password = 'le parser php déconne'; $password = 'php parser bug'; /* <? php ?> */ // // coucou ?> // ?> // ? // > ?> see the result, abnormal I think: '.$tmp); // eval('>'.$tmp); $coucou=''; $password = 'le parser php déconne'; $password = 'php parser bug'; /* */ // // coucou ?> // ?> // ? // > ?> I think it can be a very very serious, easy to fiw fot you, but in the case a php user encounter it. It so surpising !!! thanks. An echo please. Yours faithlly php is always great!. -- Edit bug report at: http://bugs.php.net/?id=14984&edit=1

« previous php.dev (#76555) next »