[Full-Disclosure] Re: Information Disclosure with Invision Board installation (fwd)

From: Rossen (rossenat_private)
Date: Tue Sep 24 2002 - 16:55:39 PDT

  • Next message: Ka: "[Full-Disclosure] Re: Information Disclosure with Invision Board installation (fwd)"

    > Basic jizt - Invision Board (all version) - installation guide copies
    > across phpinfo.php, a file which calls phpinfo().
    > Example;
    > http://blahblahblah.corp.com/phpinfo.php
    
    Fortunately phpinfo() is disabled in safe mode, which is a must for a
    "production server":
    
    ::::::::  Warning: phpinfo() has been disabled for security reasons in
    /phpinfo.php on line 8  :::::::::
    
    
    regards,
    Rossen
    <rossenat_private>
    
    
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    



    This archive was generated by hypermail 2b30 : Tue Sep 24 2002 - 23:01:50 PDT