Hi there,
For those using the RIPS scanner [1] to help the analysis of vulnerabilities on PHP code, pay attention not to leave it running on your network or available to the internet, where anyone can access it.
In a very brief static code analysis of RIPS we found two "Local File Include" (LFI) vulnerabilities as listed below:
For those using the RIPS scanner [1] to help the analysis of vulnerabilities on PHP code, pay attention not to leave it running on your network or available to the internet, where anyone can access it.
In a very brief static code analysis of RIPS we found two "Local File Include" (LFI) vulnerabilities as listed below:
