NYCPHP Meetup

NYPHP.org

[nycphp-talk] $_SERVER['PHP_SELF'} not working?

cliff cliff at pinestream.com
Wed Jul 20 20:11:25 EDT 2005


Dan:

You have opened a can of worms. If PHP_SELF can be tainted, are you saying 
we shouldn't use it? It's such a valuable tool. HOw can we guarantee it's 
integrity?

> More importantly, PHP_SELF can be tainted by users.  Don't assume 
> it's safe.
> 
> --Dan
> 
> -- 
>  T H E   A N A L Y S I S   A N D   S O L U T I O N S   C O M P A N Y
>             data intensive web and database programming
>                 http://www.AnalysisAndSolutions.com/
>  4015 7th Ave #4, Brooklyn NY 11232  v: 718-854-0335 f: 718-854-0409
> _______________________________________________
> New York PHP Talk Mailing List
> AMP Technology
> Supporting Apache, MySQL and PHP
> http://lists.nyphp.org/mailman/listinfo/talk
> http://www.nyphp.org



More information about the talk mailing list