Recent changes RSS feed
 

PHP Fingerprint Vulnerability

With the knowledge of a web page or application running on PHP it may be easier to exploit or crack.

Remedy

  • Avoid the use of the .php filename extension.
  • Hide headers that might betray the presense of PHP on the server with expose_php configuration option.
  • If using the Apache web server turn off the ServerTokens directive.

Additional Information

 
security/risk/php_fingerprint.txt · Last modified: 2006/12/09 17:15
 
Hosting for this site donated by Procata PHP Development