Forum Discussion
Tom_Spector_50
May 08, 2012Historic F5 Account
RE: Recent PHP-CGI query string parameter vulnerability
The recently found PHP-CGI
query string parameter vulnerability noted in:
https://bugs.php.net/bug.php?id=61910v
Was announced on May 2nd
and as of yet, does not have a solutio...
kman_52500
May 22, 2012Nimbostratus
If you are using php and CGI on URLs that don't end in .php this will not work.
i.e.
ScriptAlias /path /path/to/file.php
would still be vulnerable to
/path?-s
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects