From 032718b7cb93c4143877e355e9bcb6935d8cedcf Mon Sep 17 00:00:00 2001 From: jvoisin Date: Mon, 28 Dec 2020 20:45:33 +0100 Subject: Add tests for broken configuration on php8 --- src/tests/broken_configuration_php8/config/broken_conf_quotes.ini | 3 +++ 1 file changed, 3 insertions(+) create mode 100644 src/tests/broken_configuration_php8/config/broken_conf_quotes.ini (limited to 'src/tests/broken_configuration_php8/config/broken_conf_quotes.ini') diff --git a/src/tests/broken_configuration_php8/config/broken_conf_quotes.ini b/src/tests/broken_configuration_php8/config/broken_conf_quotes.ini new file mode 100644 index 0000000..eac8739 --- /dev/null +++ b/src/tests/broken_configuration_php8/config/broken_conf_quotes.ini @@ -0,0 +1,3 @@ +sp.disable_function.function("system").filename("/static_pages/index.php").var("_SERVER[PHP_SELF").value_r("\"").drop().alias("XSS"); +sp.disable_function.filename("include/imageobject_im.class.php").function("exec").var("CONFIG[im_options]).value_r("[^a-z0-9]").drop(); + -- cgit v1.3