Recent Topics

1 Aug 30, 2006 01:25    

Maybe this is the place for a Dev's reply...

http://forums.b2evolution.net/viewtopic.php?t=9094

B2evo 1.8 on Bugtraq

2 Aug 30, 2006 02:29

This is ridiculous.

$inc_path gets set by b2evolution itself and would therefor get overwritten from this kind of "global injection" (which would additionally require register_globals in PHP to be "on").

3 Aug 30, 2006 03:08

Things *like* these used to work back in 1999.

In this specific case, it would not even have worked back then because of the explicit global setting of $inc_path as stated by bluyed.

This is not even remotely a threat.


Form is loading...