[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] SANS PHP Port Scanner Remote Code Execution



Question is not about someone making a mistake, everyone make mistakes one
day or another. Question is about not even doing Q.A on a corporate blog
post (contribution or not) where you sells training @5k for B.S certs.

2013/3/5 Harry Hoffman <hhoffman@xxxxxxxxxxxxxxxx>

> lolz, that's great! I guess it shouldn't be surprising, he's a
> undergrad. But even most grad students make these sorts of mistakes...
> academicware ;-)
>
> Cheers,
> Harry
>
> On 03/05/2013 08:46 PM, laurent gaffie wrote:
> >
> http://resources.infosecinstitute.com/php-build-your-own-mini-port-scanner/
> >
> > Finding the vulnerability in this code is left as an exercise to the
> reader.
> >
> > PS: "*Your comment will be awaiting moderation forever."*
> >
> >
> >
> > _______________________________________________
> > Full-Disclosure - We believe in it.
> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
> >
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/