BLOG:CMS “DIR_ADMIN” Parameter Handling Remote PHP File Inclusion … - FrSIRT

BLOG:CMS “DIR_ADMIN” Parameter Handling Remote PHP File Inclusion … - FrSIRT
BLOG:CMS “DIR_ADMIN” Parameter Handling Remote PHP File Inclusion …FrSIRT, France - 23 hours agoThis flaw is due to an input validation error in the “admin/plugins/NP_UserSharing.php” script that does not validate the “DIR_ADMIN” parameter, …phpMiX Modsdb for mxBB “module_root_path” Remote PHP File … FrSIRTBarman “basepath” Parameter Handling Remote PHP File Inclusion … FrSIRTdadaIMC “FilesMatch” Directive Multiple File Handling Command … FrSIRTFrSIRTall 10 news articles

Microsoft’s Latest Script: Improve PHP on Windows - Redmond Developer News

Microsoft’s Latest Script: Improve PHP on Windows - Redmond Developer News
Microsoft’s Latest Script: Improve PHP on WindowsRedmond Developer News, CA - 9 hours agoMicrosoft is taking action to improve the performance of PHP-based applications running on Windows Server 2003. Redmond is collaborating with Zend …Bat Turning the Business Redmond Developer Newsall 3 news articles

PHP Security Expert Resigns (Slashdot)

PHP Security Expert Resigns (Slashdot)
juct writes “PHP security holes have a name ? quite often it was Stefan Esser who found and reported them. Now Esser has quit the PHP security team. He feels that his attempt to make PHP safer “from the inside” is futile. Basic security issues are not addressed sufficiently by the developers. Zeev Suraski, Zend’s CTO of course disagrees and points his finger at inexperienced programmers. But …