XSS
authorTim Starling <tstarling@users.mediawiki.org>
Sun, 9 Jul 2006 04:30:16 +0000 (04:30 +0000)
committerTim Starling <tstarling@users.mediawiki.org>
Sun, 9 Jul 2006 04:30:16 +0000 (04:30 +0000)
profileinfo.php

index c7305b3..52658fb 100644 (file)
@@ -48,7 +48,6 @@ $wgDBadminuser = $wgDBadminpassword = $wgDBserver = $wgDBname = $wgEnableProfile
 
 define("MEDIAWIKI", 1);
 if ( isset( $_REQUEST['GLOBALS'] ) ) {
-       print $GLOBALS;
        echo '<a href="http://www.hardened-php.net/index.76.html">$GLOBALS overwrite vulnerability</a>';
        die( -1 );
 }