Home page logo

fulldisclosure logo Full Disclosure mailing list archives

Some SQL inj and including hints
From: Vladimir Vorontsov <vladimir.vorontsov () onsec ru>
Date: Thu, 14 Jan 2010 16:39:37 +0300

Hi all,

1. On Win systems use short directories names like that:
Progra~1 == "Program Files"
Docume~1 == "Documents and Settings"
if you want to create file in space contained folder using INTO

In other cases your can't write file using MySQL if their absoute path have
a spaces.

2. Use .phtml extension instead of .php to fraud WebApplicationFirewalls
and filters.
Default apache2 configuration file like this:

<IfModule mod_php5.c>
AddType application/x-httpd-php .php .phtml .php3
AddType application/x-httpd-php-source .phps

Sorry for my bests English.

Best regards!
Vladimir Vorontsov, security expert.
ONsec: turn on security

Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  By Date           By Thread  

Current thread:
  • Some SQL inj and including hints Vladimir Vorontsov (Jan 14)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]