note 22893 added to security.registerglobals

From: Date: Wed, 03 Jul 2002 14:01:17 +0000
Subject: note 22893 added to security.registerglobals
Groups: php.notes 
Request: Send a blank email to php-notes+get-32547@lists.php.net to get a copy of this message
I'm working through the Introduction Tutorials on php.net. In the Dealing with Forms part at the bottom I write out the code for the form page(form.html) and the submit page (action.php). Then test it on IIS. It works fine when I turn "on" Register Globals, but this is an security issue, so no good. What's the point in learning code that has security holes in it? What should be the code for the form? Is it the "post" bit I need to change? Now this securty issue is solved in the latest version of php, why is the Introductory Tutorial still written for ealier versions of php? Why not start us off on the right foot with tutorials written in php 4.2.1 or whatever the latest is. -- http://www.php.net/manual/en/security.registerglobals.php http://master.php.net/manage/user-notes.php?action=edit+22893 http://master.php.net/manage/user-notes.php?action=delete+22893 http://master.php.net/manage/user-notes.php?action=reject+22893

« previous php.notes (#32547) next »