Re: [Full-disclosure] Improper Character Handling In PHP Based Scripts like PhpBB, IPB etc.

2006-01-24 Thread [EMAIL PROTECTED]
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 this range of chars \xA? is known to bug in various applications, this would have been better h4cky0u to stfu :> h4cky0u wrote: > Well this was after i found somebody posing as me on my site --> > http://www.h4cky0u.org which was actually quite inter

Re: [Full-disclosure] Improper Character Handling In PHP Based Scripts like PhpBB, IPB etc.

2006-01-24 Thread 3APA3A
Dear h4cky0u, This characters has a code of 173 (0xAD). What you see or what you do not see depends only on your current codepage . Probably, this character willbefiltered out by Windows API may be as non-printable or during conversion from Windows- to Unicode. PHP have no rela

[Full-disclosure] Improper Character Handling In PHP Based Scripts like PhpBB, IPB etc.

2006-01-24 Thread h4cky0u
Well this was after i found somebody posing as me on my site --> http://www.h4cky0u.org which was actually quite interesting and dangerous  (looking from the social engineering point of view).   Download the following file -   http://www.h4cky0u.org/poc.txt   Make sure you download it and not view