[thelist] php settings for DB access

jon steele jjsteele22 at yahoo.com
Wed Aug 14 13:19:00 CDT 2002


--- Andrew Maynes <andrew at humanbehaviour.co.uk> wrote:
> There must be something with the refresh!  The index.html has kicked in now so
> none of the files residing within that directory are showing now.
>
> if search engines pick up these files then there is a potential security scare
> for alot of sites out there.

So what if search engines pick it up? It is a php script with a .php extension, so the server will
parse the file. And since it is just a variable include, the output will be nothing :).

There is a scare for those people who name files .inc or .txt or no extension at all, and the
server doesn't parse the file and opens or prompts for download :|


__________________________________________________
Do You Yahoo!?
HotJobs - Search Thousands of New Jobs
http://www.hotjobs.com



More information about the thelist mailing list