NYCPHP Meetup

[nycphp-talk] <a href> vs. <form> request

Jerry Kapron nyphp at NewAgeWeb.com
Wed Apr 16 20:24:22 EDT 2003


> I'm not sure if this would help, but if you want
>to kill all the incoming user params, I think you could
>un-set $_REQUEST, $_GET, $_POST, and all those to NULL.
>Of course, if you have register_globals ON, you'd have
>to unset all your globals individualy.

I can't kill them .. I need them :)

> We could probably suggest better ideas if you
>would explain what your security issues are.

Read my reply to Chris.  I explained as much as I could reveal at this time.

Thanks again,
Jerry





More information about the talk mailing list