eestock again <solved>
Ted Ozolins
ted1
Mon May 17 11:57:36 PDT 2004
Collins wrote:
>
>
>It's quite clear in all the literature that this is a major security exposure.
>You will wnat to report this to whoever crafted the script.
>
>
>
Yup, I read that just after posting. This system is well hidden behind a
dedicated firewall and for the time being I'll run with this change.
I've gone over the php scripts and have identified all the changes I'll
have to make. I'll be emailing the author with what I had to do and the
changes I propose so that eestock will run with php-4 without turning
"register_globals=On". Yet he lists php4 as a pre-requisite, strange.
--
Ted Ozolins(VE7TVO)
Westbank, B. C
More information about the Linux-users
mailing list