Full Disclosure mailing list archives

Re: SANS PHP Port Scanner Remote Code Execution


From: laurent gaffie <laurent.gaffie () gmail com>
Date: Tue, 5 Mar 2013 21:14:18 -0500

Question is not about someone making a mistake, everyone make mistakes one
day or another. Question is about not even doing Q.A on a corporate blog
post (contribution or not) where you sells training @5k for B.S certs.

2013/3/5 Harry Hoffman <hhoffman () ip-solutions net>

lolz, that's great! I guess it shouldn't be surprising, he's a
undergrad. But even most grad students make these sorts of mistakes...
academicware ;-)

Cheers,
Harry

On 03/05/2013 08:46 PM, laurent gaffie wrote:

http://resources.infosecinstitute.com/php-build-your-own-mini-port-scanner/

Finding the vulnerability in this code is left as an exercise to the
reader.

PS: "*Your comment will be awaiting moderation forever."*



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: