Full Disclosure mailing list archives

review: magic_quotes_gpc=on bypass project in 2006


From: x90c <geinblues () gmail com>
Date: Tue, 20 Aug 2013 14:36:54 +0900

I got a project to bypass the sql injection limitation of
magic_quotes_gpc=on in php.ini. and I share the project and web private
exploit on the irc. It's an review of the research.

- advisory: http://www.x90c.org/advisories/::CVE-2006-2486
- discussion:
http://x90c.blogspot.kr/2013/08/magicquotesgpcon-bypass-project-in-2006.html


x90c
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: