<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: Security Vulnerability in cpCommerce</title> <atom:link href="http://www.brandonchecketts.com/archives/security-vulnerability-in-cpcommerce/feed" rel="self" type="application/rss+xml" /><link>http://www.brandonchecketts.com/archives/security-vulnerability-in-cpcommerce</link> <description>Web Programming, Linux System Administation, and other geeky stuff</description> <lastBuildDate>Thu, 05 Jan 2012 11:11:59 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>By: Brandon</title><link>http://www.brandonchecketts.com/archives/security-vulnerability-in-cpcommerce/comment-page-1#comment-240</link> <dc:creator>Brandon</dc:creator> <pubDate>Sun, 06 May 2007 00:46:38 +0000</pubDate> <guid
isPermaLink="false">http://www.brandonchecketts.com/archives/69#comment-240</guid> <description>My patch was just a quick regular expression check on the abused variable.   The author&#039;s patch was more in-depth.  It made sure the script wasn&#039;t called directly (it was meant to be included as part of a whole page).  It also looks like the variable was also initialized correctly, so an attempt to pass the variable in using register_globals would no longer work.</description> <content:encoded><![CDATA[<p>My patch was just a quick regular expression check on the abused variable.   The author&#8217;s patch was more in-depth.  It made sure the script wasn&#8217;t called directly (it was meant to be included as part of a whole page).  It also looks like the variable was also initialized correctly, so an attempt to pass the variable in using register_globals would no longer work.</p> ]]></content:encoded> </item> <item><title>By: Kevin</title><link>http://www.brandonchecketts.com/archives/security-vulnerability-in-cpcommerce/comment-page-1#comment-238</link> <dc:creator>Kevin</dc:creator> <pubDate>Sat, 05 May 2007 22:26:58 +0000</pubDate> <guid
isPermaLink="false">http://www.brandonchecketts.com/archives/69#comment-238</guid> <description>Nice job Brandon, it&#039;s always nice to see people contributing back to the open source community!  Did the developer use your patch or create his own?</description> <content:encoded><![CDATA[<p>Nice job Brandon, it&#8217;s always nice to see people contributing back to the open source community!  Did the developer use your patch or create his own?</p> ]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (user agent is rejected)
Database Caching 5/14 queries in 0.004 seconds using disk

Served from: www.brandonchecketts.com @ 2012-02-04 03:29:27 -->
