Posted by Adam King on 05/14/05 15:41
I'm sure you're no idiot, but just a heads up incase you are unaware of
this. Be careful about any secure areas of your site to which you want
restricted access, for example PHP include folders or anything. I have
seen a few sites which use this "index.php gateway" approach, where
simply changing the string passed to the script allows access to
anything, sometimes even sending PHP source unparsed. This problem may
or may not affect you, depending on how you've done things.
[Reply to this message]