note 33896 deleted from features.remote-files by nlopess
| From: | nlopess@php.net | Date: | Wed, 16 Mar 2005 15:15:10 +0000 |
| Subject: | note 33896 deleted from features.remote-files by nlopess | ||
| References: | 1 | Groups: | php.notes |
| Request: | Send a blank email to php-notes+get-86556@lists.php.net to get a copy of this message | ||
Note Submitter: jules at acris dot co dot uk
----
Note that in the last example, you could still request a dodgy file from the local server. For
instance, /etc/passwd may allow you to get some encrypted passwords to run a cracking attempt
against... /var/lib/mysql/mysql/user.MYD may also be a target for this kind of thing if you run
mysql.