yashrs Posted April 16, 2014 Posted April 16, 2014 Link to a page on my website where PHP is getting executed even when the extension is random.1.2.3. : Link Is this the problem with the configuration of Apache with PHP ? Help needed. If I have uploading enabled and I am restricting PHP files then a attacker can upload a file with some other extension and execute PHP on my website. Thanking You,Yash Sodha 1 Quote
Ice IT Support Posted April 17, 2014 Posted April 17, 2014 That's strange, Stevie used to only execute PHP in files with the .php extension. In any case, it's probably most secure to filter files with PHP opening/closing tags in addition to filtering the extension. Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.