Nginx+Php-fpm Dangerous Bug

Jérôme Loyet jerome at loyet.net
Sat Dec 3 09:29:59 UTC 2011


2011/12/3 Edho Arief <edho at myconan.net>:
> On Sat, Dec 3, 2011 at 4:09 PM, escavern <nginx-forum at nginx.us> wrote:
>>
>> i wish someone can help me to stop it executed like apache does.
>> thanks
>>
>
> http://ceri.ws/rfi.php?hal=/etc/httpd/conf/httpd.conf

http://ceri.ws/rfi.php?hal=/etc/redhat-release, welcome on CentOS 5.7 :)

please don't ask nginx nor FPM to secure an insecure code like this one !
learn how to sanitize inputs, learn basics of security coding or ask a
professional :)

what else ?

++ fat

>
>
> --
> O< ascii ribbon campaign - stop html mail - www.asciiribbon.org
>
> _______________________________________________
> nginx mailing list
> nginx at nginx.org
> http://mailman.nginx.org/mailman/listinfo/nginx



More information about the nginx mailing list