Subscribe via feed.

PHP PHP_INI_SYSTEM Ineffective Controls

Posted by deepcore on May 22, 2019 – 8:20 am

Security controls configured via php.ini directives at the PHP_INI_SYSTEM level are ineffective as they could be bypassed by malicious scripts via writing their own process memory on the Linux platform. Proof of concept code included.


This post is under “exploit” and has no respond so far.
If you enjoy this article, make sure you subscribe to my RSS Feed.

Post a reply

You must be logged in to post a comment.