note 34285 added to security.hiding
| From: | l0rdphi1 at liquefyr dot com | Date: | Mon, 21 Jul 2003 09:02:37 +0000 |
| Subject: | note 34285 added to security.hiding | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-52448@lists.php.net to get a copy of this message | ||
More fun includes files without file extensions.
Simply add that ForceType application/x-httpd-php bit to an Apache .htaccess and you're set.
Oh yea, it gets even better when you play with stuff like the following:
substr($_SERVER['PATH_INFO'],1);
e.g. www.yoursite.com/somepage/55
And:
foreach ( explode('/',$_SERVER['PATH_INFO']) as $pair ) {
list($key,$value) = split('=',$pair,2);
$param[$key] = stripslashes($value);
}
e.g. www.yoursite.com/somepage/param1=value1/param2=value2/etc=etc
Enjoy =)
----
Manual Page -- http://www.php.net/manual/en/security.hiding.php
Edit Note -- http://master.php.net/manage/user-notes.php?action=edit+34285
Delete Note -- http://master.php.net/manage/user-notes.php?action=delete+34285&report=yes
Reject Note -- http://master.php.net/manage/user-notes.php?action=reject+34285&report=yes