Re: [Security-Discuss] Possible PHP hole in Perl?
"Ronald Ip" <myself-zSWdYiJ/+5RWk0Htik3J/[email protected]>
| Newsgroups | gmane.linux.mandrake.security.general |
|---|---|
| Message-ID | <[email protected]> |
Hi, Bob [email protected] said: > Hello, > > Just saw this tonight on one of my boxes. If I have mod_perl running as a > webserver on port 8200 > (the default), and I browse to a .php page, the page is sent without being > rendered by the php > engine - exposing some potentially juicy stuff. Is this a > misconfiguration on my part, or a > real hole? It's more like a mis-config. Check that you have the relevent directives required by php in ur httpd.conf. > > Bob > > Example: http://localhost:8200/myfile.php > > > -- Ronald Ip myself-zSWdYiJ/+5RWk0Htik3J/[email protected] gpg public key @ http://iphoting.iphoting.com/iphoting.asc Fingerprint: {6A7E AB1E A822 E621 4DEC 11C4 F355 0635 71D7 1151}
message.footer
(text/plain, 239 B)
____________________________________________________ Want to buy your Pack or Services from MandrakeSoft? Go to http://www.mandrakestore.com Join the Club : http://www.mandrakeclub.com ____________________________________________________