There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
 
Software Development
Tag Cloud
audio blue screen boot bsod computer cpu crash dell desktop driver drivers error excel external hard drive firefox freezes freezing hard drive hardware hijackthis install internet internet explorer itunes keyboard laptop malware mouse network networking outlook 2007 power printer problem ram restart router screen slow sound trojan usb virtumonde virus vista vista 32-bit windows windows xp winxp wireless
Search
Search in:
 
Advanced Search
Tech Support Guy Forums > Software & Hardware > Software Development >
PHP escapeshellarg and escapeshellcmd execute command


Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. Enjoy!

Closed Thread
 
Thread Tools
eddie5659's Avatar
Computer Specs
Moderator with 18,680 posts.
 
Join Date: Mar 2001
Location: Bradford, England
07-Jun-2004, 04:03 PM #1
Exclamation PHP escapeshellarg and escapeshellcmd execute command
Hiya



PHP is a cross-platform, server-side, embedded scripting language used in many Web server environments. PHP versions 4.3.6 and earlier for Microsoft Windows operating systems, could allow a remote attacker to execute commands. The escapeshellarg function is used to stop the execution of additional commands, however this function does not work correctly when running on Microsoft Windows operating systems.


Platforms Affected:

Microsoft Corporation: Windows Any version
PHP Group: PHP 4.3.6 and prior


http://xforce.iss.net/xforce/xfdb/16331

Regards

eddie
__________________
Just go with the flow, like a twig on the shoulders of a mighty stream

Weekends I may be busy, so there may be a delay in replies.

Last edited by eddie5659 : 19-Jun-2004 11:05 AM.
john1's Avatar
Distinguished Member with 8,690 posts.
 
Join Date: Nov 2000
Location: England
07-Jun-2004, 10:59 PM #2
Is this just another vulnerability
over which we have no control ?

Or can the PHPs be dis-abled ?

And what is an additional command ?
Shadow2531's Avatar
Distinguished Member with 2,629 posts.
 
Join Date: Apr 2001
08-Jun-2004, 06:43 AM #3
In addition, the PHP 4.3.6 win32 apache module broke a few SquirrelMail Plugins. Problems are fixed in PHP 4.3.7. 4.3.6 appears to be quite buggy. I suggest upgrading to 4.3.7.
Closed Thread

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.



Thread Tools


You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 12:10 PM.
Copyright © 1996 - 2008 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.1.0
Powered by Cermak Technologies, Inc.