Re: opendir security hole

From: Date: Fri, 24 May 2002 11:34:02 +0000
Subject: Re: opendir security hole
References: 1 2  Groups: php.general 
Request: Send a blank email to php-general+get-99074@lists.php.net to get a copy of this message
unfortunatly it still happens "Analysis & Solutions" <danielc@analysisandsolutions.com> wrote in message news:20020523152342.GB3933@panix.com... > On Thu, May 23, 2002 at 11:22:28PM +1000, daniel wrote: > > dir=../../../../ it will show you the root dir of the server , how can i > > Before passing the $Dir variable to the file functions, clean it up... > > $Dir = preg_replace('/..\//', '', $Dir); > > --Dan > > -- > PHP classes that make web design easier > SQL Solution | Layout Solution | Form Solution > sqlsolution.info | layoutsolution.info | formsolution.info > T H E A N A L Y S I S A N D S O L U T I O N S C O M P A N Y > 4015 7 Av #4AJ, Brooklyn NY v: 718-854-0335 f: 718-854-0409

« previous php.general (#99074) next »