Re: Possible to run arbitrary PHP code on pipermail server

2009-02-20 Thread Erich Hoover
On Fri, Feb 20, 2009 at 4:21 PM, Remco wrote: > I read the following e-mail on pipermail: > http://www.winehq.org/pipermail/wine-devel/2009-February/073428.html > > Try downloading the PHP attachment from there; it will actually > execute and give you an HTML page. This could easily be abused! >

Possible to run arbitrary PHP code on pipermail server

2009-02-20 Thread Remco
I read the following e-mail on pipermail: http://www.winehq.org/pipermail/wine-devel/2009-February/073428.html Try downloading the PHP attachment from there; it will actually execute and give you an HTML page. This could easily be abused! Remco