[nycphp-talk] NEW PHundamentals: HTTP Response Splitting
Jeff Siegel
jsiegel1 at optonline.net
Sun Sep 18 14:02:30 EDT 2005
Re: Title - Point well taken.
If there are some specifics of the discussion that you feel should be
included, do not hesitate to point out those particular items.
Remember (and this is really addressed to all), the Phundamentals are not
meant to recapitulate an entire discussion but to distill the essential
points. So if there are any essential points that are missing, please let it
be known so changes can be made.
Jeff
-----Original Message-----
From: talk-bounces at lists.nyphp.org [mailto:talk-bounces at lists.nyphp.org] On
Behalf Of Daniel Convissor
Sent: Sunday, September 18, 2005 12:44 PM
To: NYPHP Talk
Subject: Re: [nycphp-talk] NEW PHundamentals: HTTP Response Splitting
Hi Jeff (and everyone):
On Sun, Sep 18, 2005 at 01:28:23PM -0400, Jeff Siegel wrote:
> A new PHundamentals article - "HTTP Response Splitting" - has been posted.
...
> http://www.nyphp.org/phundamentals/http_response_splitting.php
The posting seems to have ignored much of the discussion regarding this
topic we had on the list. In addition, the article is misnamed. The
attack at hand isn't response splitting, which has to do with injecting
items into header() calls.
--Dan
--
T H E A N A L Y S I S A N D S O L U T I O N S C O M P A N Y
data intensive web and database programming
http://www.AnalysisAndSolutions.com/
4015 7th Ave #4, Brooklyn NY 11232 v: 718-854-0335 f: 718-854-0409
_______________________________________________
New York PHP Talk Mailing List
AMP Technology
Supporting Apache, MySQL and PHP
http://lists.nyphp.org/mailman/listinfo/talk
http://www.nyphp.org
More information about the talk
mailing list