[32969] in bugtraq

home help back first fref pref prev next nref lref last post

Re: php-ping: Executing arbritary commands

daemon@ATHENA.MIT.EDU (ppp-design)
Tue Dec 30 13:29:28 2003

Message-ID: <3FF1415E.5080908@ppp-design.de>
Date: Tue, 30 Dec 2003 10:11:58 +0100
From: ppp-design <security@ppp-design.de>
MIME-Version: 1.0
To: Golden_Eternity <bugtraq@bhodisoft.com>
Cc: bugtraq@securityfocus.com, full-disclosure@lists.netsys.com
In-Reply-To: <EOEGLIKIMNJIPFEJADFFAENACAAA.bugtraq@bhodisoft.com>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Golden_Eternity wrote:

>>If ($count > $max_count && !is_numeric($count))
> 
> Shouldn't that be '||' instead of '&&'?

Yes, of course. Sorry, this typo should have been fixed before releasing
the advisory.


Thanks a lot for the hint,

Jens Liebchen
ppp-design



-- 
ppp-design
http://www.ppp-design.de
Public-Key: http://www.ppp-design.de/pgp/ppp-design.asc
Fingerprint: 5B02 0AD7 A176 3A4F CE22  745D 0D78 7B60 B3B5 451A

home help back first fref pref prev next nref lref last post