[Full-disclosure] [WEB SECURITY] Plain Old Webserver - The coolest firefox extension
Giorgio Fedon
giorgio.fedon at gmail.com
Mon Feb 12 20:54:28 GMT 2007
I thing that there is an implicit joke in the previous post...
"..././..././..././..././"
how can't you love funsec?
path = str_replace('../', '', path);
Becomes "../../../../" again...
GF
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070212/8b6e9b81/attachment.html
Full-Disclosure is hosted and sponsored by Secunia.