PHP Sploit

Results 1 to 4 of 4
  1. #1
    Ginger by design. jMerliN is offline
    MemberRank
    Feb 2007 Join Date
    2,497Posts

    PHP Sploit

    WARNING

    PHP Floating Point Bug Crashes Servers - Slashdot

    I'm not sure vBulletin is vulnerable (does it try to interpret any inputs as numbers rather than ints?) or if you're running a relatively recent version of PHP but you may want to patch this, MentaL.

    I just tested this in a quick script on my desktop and indeed:
    PHP Code:
    xxx 
    Causes it to enter an infinte loop. I'm guessing the arcade is an area where vBulletin may be vulnerable as it may interpret floating point numbers somewhere.
    Last edited by MentaL; 06-01-11 at 09:27 PM.


  2. #2
    Gamma Samus. is offline
    MemberRank
    Jun 2008 Join Date
    wvndesign.nlLocation
    3,216Posts

    Re: PHP Sploit

    Should haved PM'd MentaL.

  3. #3
    ...[ White Rabbit ]... MentaL is offline
      Administrator  Rank
    Jan 2001 Join Date
    31,750Posts

    Re: PHP Sploit

    Cheers for the info.

  4. #4
    Ginger by design. jMerliN is offline
    MemberRank
    Feb 2007 Join Date
    2,497Posts

    Re: PHP Sploit

    Quote Originally Posted by Settler11 View Post
    Should haved PM'd MentaL.
    If I could've :P



Advertisement