PHPÉúÈÕ¼ÆËã
ÌÚѶµÄQQ¿Õ¼ä¸ù¾Ý»áÔ±×ÊÁϼÆËãÉúÈÕ²¢ÌáÐѺÃÓÑ·¢ËÍÉúÈÕ×£¸££¬Ò»Ð©ÍøÕ¾Ò²ÓÐÀàËÆµÄ¹¦ÄÜ£¬±ÈÈçÌáǰ¼¸ÌìÏò»áÔ±·¢ËÍ×£¸£Óʼþ¡£
´óÖ¹ý³ÌÈçÏ£ºÉèÖÃÒ»¸ö×Ô¶¯Ö´ÐгÌÐò£¬±ÈÈçLinuxÏ¿ÉÒÔÓÃCronTab ʵÏÖ¡£´Ë³ÌÐòÿÌìÖ´ÐÐÒ»´Î¶ÁÈ¡»áÔ±×ÊÁÏÖеÄbirth_day,
ÅжÏÊÇ·ñ·ûºÏÉèÖõķ¢ËÍÒªÇó¡£¼ÙÈçÉèÖÃÌáǰÈýÌì·¢ËÍÓʼþ£¬ÔòÅжϻáÔ±ÉúÈÕ£¨ÔÂÈÕ£©ÊÇ·ñµÈÓÚµ±Ç°ÔÂÈÕ+3¡£ »ù±¾´úÂëÈçÏ£¬
ÔÎĵØÖ· http://www.phpwell.com/?p=89
˵Ã÷£º´Ë¼ÆËã¹ý³Ì¼Ù¶¨»áÔ±×ÊÁÏÖеÄÉúÈÕÊǹ«Àú¼ÍÄê¡£
Ïà¹ØÎĵµ£º
OpenX adserver version 2.8.1 and lower is vulnerable to remote code
execution. To be exploited, this vulnerability requires banner / file
upload permissions, such as granted to the 'advertiser' and
'administrator' roles.
This vulnerability is caused by the (insecure) file upload mechanism of
af ......
set_magic_quotes_runtimeÊÇÓÃÀ´ÉèÖÃPHP »·¾³ÅäÖõıäÁ¿ magic_quotes_runtime Öµ¡£
0-¹Ø±Õ 1-´ò¿ª
³ÌÐòÖмì²â״̬ÓÃget_magic_quotes_runtime,·µ»Ø 0 ±íʾ¹Ø±Õ±¾¹¦ÄÜ£»·µ»Ø 1 ±íʾ±¾¹¦ÄÜ´ò¿ª¡£Èô
magic_quotes_runtime ´ò¿ªÊ±£¬ËùÓÐÍⲿÒýÈëµÄÊý¾Ý¿â×ÊÁÏ»òÕßÎļþµÈµÈ¶¼»á×Ô¶¯×ªÎªº¬Óз´Ð±ÏßÒç³ö×Ö·ûµÄ×ÊÁÏ¡ ......
´ËƪÎÄÕÂ×¼±¸·Ö2¸ö²¿·ÖÀ´½²Êö£º
µÚÒ»²¿·ÖÖ÷ÒªÏêϸ½²ÊöÒ»ÏÂÔõô¹¹½¨Ò»¸öÍê³ÉµÄC++Ó¦ÓÃÀ©Õ¹Ä£¿é£»
µÚ¶þ²¿·ÖÖ÷Òª½²ÊöÔÚPHP¼°Zend¿ò¼ÜÏÂÔõôʹÓÃZend APIºÍC++ÓïÑÔÀ´ÊµÏÖ×Ô¼ºËùÒªµÄ¹¦ÄÜÒÔ¼°ÏîÄ¿µÄ¿ª·¢£»
´ËƪÎÄÕÂËùÔËÓõĻ·¾³ÔÚLinux
2.4.21-4.ELsmp(Red Ha ......
ÔÚÅäÖÃeventumµÄÓʼþ·þÎñµÄʱºò£¬Ê¼ÖÕ²»ÄÜ·¢Óʼþ¡£×¥°üºó·¢ÏÖ¸ù±¾¾ÍûÓÐÁ¬½Óµ½Óʼþ·þÎñÆ÷¡£ÔÙÒ»²é£¬ÔÀ´ÊÇ·þÎñÆ÷ôÓÐ
°²×°IMAP¡£ÏÂÃæÊǰ²×°Ç°ÕÒµ½µÄ×ÊÁÏ~~~
¡¾×ªÔØ¡¿
°²×°sugarcrm£¬Èç¹ûÄã²»°²×°imap£¬ÄÇôÄã¾ÍÎÞ·¨Ê¹ÓõÄËûµÄÓʼþ¹¦ÄÜ£¬ËûµÄÓʼþ¹¦ÄÜÊÇͨ¹ýimapÈ¥¶ÁÔ¶³ÌµÄÓʼþ¡£
ΪÁËÕâ¸öÄ£¿é£¬ÎÒ¿ÉÊÇÑо¿ÁËÒ»¸öÏÂÎ磬 ......