OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: MOD (br014c1155blueyonder.co.uk)
Date: Fri Apr 26 2002 - 15:27:34 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    PHP-Survey is an online survey creation and management system written in
    PHP. It uses a MySQL database on backend for all data handling.
    Global.inc holds the database information, and settings for the survey's
    interface. Global.inc on default settings is not interpreted by PHP hence
    any user can make an HTTP request for global.inc and will be able to view
    the source code, hence the database password, username, localhost is
    revealed, and also superuser information for the administration of the poll
    survey. A solution might be to rename global.inc to global.inc.php.