Hi,

>  if the make script <? if($id) include($id); ?>
>  and then just write
>  test.php?id=/etc/passwd , they see all the file.


Well, FreeBSD provides a way to jail webservers:  Jails  8-)

http://www.freebsd.org/doc/en_US.ISO8859-1/books/developers-handbook/jail.html



with best regards
-- 
Andreas Mendyk [EMAIL PROTECTED] - mobile +49 172 7111512
               Uhlandstr. 7  D-73271 Holzmaden
               http://www.mendyk.net/

-- 
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to