[Phpmyadmin-devel] phpMyAdmin 2.9.0.1 is released

Michal Čihař michal at cihar.com
Tue Oct 3 14:53:12 CEST 2006


On Tue, 03 Oct 2006 14:32:44 +0200
Sebastian Mendel <lists at sebastianmendel.de> wrote:

> $_SESSION variables can be overwritten with register_globals on
> 
> you cannot overwrite variable with spaces
> 
> script.php?%20var%20
> 
> becomes
> 
> $_REQUST['_var']
> 
> so you have no possibility to overwrite any variable with spaces in its
> name from outside

Thanks for explanation!

-- 
	Michal Čihař | http://cihar.com | http://blog.cihar.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://lists.phpmyadmin.net/pipermail/developers/attachments/20061003/76a2b19a/attachment.sig>


More information about the Developers mailing list