且构网

分享程序员开发的那些事...
且构网 - 分享程序员编程开发的那些事

目录遍历漏洞

更新时间:2023-09-11 21:35:40

2004年2月23日星期一20:54:36 GMT,Tim Tyler< ti * @ tt1lock.org&GT;写道:
On Mon, 23 Feb 2004 20:54:36 GMT, Tim Tyler <ti*@tt1lock.org> wrote:
今天':'目录遍历漏洞':

- http://secunia.com/advisories/10955/
更多证据表明,PHP被快速攻击,没有太大的交易
考虑安全性。
Today''s: "Directory Traversal Vulnerability":

- http://secunia.com/advisories/10955/

More evidence tht PHP was hacked together rapidly without a great deal
of thought being given to security.




有证据表明,一些名为''phpNewsManager'的脚本被黑客攻击了

迅速没有考虑安全性。同样的错误

可用多种语言实现。


-

Andy Hassall< an ** @ andyh。 co.uk&GT; / Space:磁盘使用情况分析工具

< http://www.andyh.co.uk> /< http://www.andyhsoftware.co.uk/space>



It''s evidence that some script named ''phpNewsManager'' was hacked together
rapidly without a great deal of thought being given to security. The same bug
can be implemented in many languages.

--
Andy Hassall <an**@andyh.co.uk> / Space: disk usage analysis tool
<http://www.andyh.co.uk> / <http://www.andyhsoftware.co.uk/space>




2004年2月23日,Tim Tyler< ; ti*@tt1lock.org>写道:

On 23-Feb-2004, Tim Tyler <ti*@tt1lock.org> wrote:
今天':'目录遍历漏洞':

- http://secunia.com/advisories/10955/
更多证据表明,PHP被快速攻击,没有太大的交易
考虑安全性。
Today''s: "Directory Traversal Vulnerability":

- http://secunia.com/advisories/10955/

More evidence tht PHP was hacked together rapidly without a great deal
of thought being given to security.




我建议你尝试学习PHP和应用程序之间的区别

写的PHP之前你进一步让自己难堪。


-

Tom Thackrey
www.creative-light.com

tom(at)creative(dash)light(dot)com

不发送电子邮件至 ja*********@willglen.net (它是为垃圾邮件发送者保留的)



I suggest you attempt to learn the difference between PHP and an application
written in PHP before you embarrass yourself further.

--
Tom Thackrey
www.creative-light.com
tom (at) creative (dash) light (dot) com
do NOT send email to ja*********@willglen.net (it''s reserved for spammers)


Tim Tyler写道:
Tim Tyler wrote:
今天':'目录Tr厌恶漏洞:

- http://secunia.com/建议/ 10955 /
更多的证据表明PHP很快被黑客攻击,没有给予安全的大量思考。
Today''s: "Directory Traversal Vulnerability":

- http://secunia.com/advisories/10955/

More evidence tht PHP was hacked together rapidly without a great deal
of thought being given to security.


>
你认真吗?还是孤单?如果你是前者,请继续阅读 - 如果你是后者,那就买一条狗然后散步......


阅读你发布的文章的前两行...它说


G00db0y报告了phpNewsManager中的一个漏洞,可以通过以下方式获取
恶意的人获取敏感信息的知识。


注意在哪里说phpNewsManager中的漏洞


上面的部分内容你不明白吗?


而且......你说它的更多证据 ?您是否想要与我们分享一些同样令人信服的问题?有了像

这样的证据,你应该为布什先生或布莱尔先生工作......



Are you serious? or lonely? If you''re the former, read on - If you''re
the latter, then buy a dog and take a walk...

Read the first two lines of the article you posted... It says

"G00db0y has reported a vulnerability in phpNewsManager, which can be
exploited by malicious people to gain knowledge of sensitive information."

Note where is says "vulnerability in phpNewsManager"

What part of the above do you not understand?

And... You say its "More evidence" ? Do you have some equally
compelling issues that you''d like to share with us? With evidence like
that, you ought to work for Mr Bush or Mr Blair...