[UPHPU] PHP/MySQL Security

Justin Giboney giboney at giboneydesigns.com
Wed Jul 11 15:44:21 MDT 2007


So, I am reading the book "Essential PHP Security", and I came across  
the part about the mysql username and password, and I have a question.

How can someone read a include ending in PHP? I thought the PHP code  
never left the server. He says that the file should not be in a  
public folder, which I can understand, but since you see nothing when  
that page is called through the internet, how can it be read?

Justin Giboney






More information about the UPHPU mailing list