note 28472 added to features.remote-files
| From: | robro at compsoc dot nuigalway dot ie dot nospam | Date: | Tue, 14 Jan 2003 12:37:40 +0000 |
| Subject: | note 28472 added to features.remote-files | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-42119@lists.php.net to get a copy of this message | ||
The easiest way I'd see around the security hold mentioned above would be to turn off
allow_url_fopen, using ini_set.
If that is not acceptable you can simply str_replace out the :// part that seperates the protocol
from the address.
include( str_replace("://", "", $whatever) );
should do the trick.
--
http://www.php.net/manual/en/features.remote-files.php
http://master.php.net/manage/user-notes.php?action=edit+28472
http://master.php.net/manage/user-notes.php?action=delete+28472
http://master.php.net/manage/user-notes.php?action=reject+28472