From: [EMAIL PROTECTED] Operating system: * PHP version: 5CVS-2003-04-01 (dev) PHP Bug Type: Documentation problem Bug description: Bug in documentation of SESSIONs
Documentation suggest to output SID with a simple echo -> vulnerable to Cross Site Scripting -- Edit bug report at http://bugs.php.net/?id=23001&edit=1 -- Try a CVS snapshot: http://bugs.php.net/fix.php?id=23001&r=trysnapshot Fixed in CVS: http://bugs.php.net/fix.php?id=23001&r=fixedcvs Fixed in release: http://bugs.php.net/fix.php?id=23001&r=alreadyfixed Need backtrace: http://bugs.php.net/fix.php?id=23001&r=needtrace Try newer version: http://bugs.php.net/fix.php?id=23001&r=oldversion Not developer issue: http://bugs.php.net/fix.php?id=23001&r=support Expected behavior: http://bugs.php.net/fix.php?id=23001&r=notwrong Not enough info: http://bugs.php.net/fix.php?id=23001&r=notenoughinfo Submitted twice: http://bugs.php.net/fix.php?id=23001&r=submittedtwice register_globals: http://bugs.php.net/fix.php?id=23001&r=globals PHP 3 support discontinued: http://bugs.php.net/fix.php?id=23001&r=php3 Daylight Savings: http://bugs.php.net/fix.php?id=23001&r=dst IIS Stability: http://bugs.php.net/fix.php?id=23001&r=isapi Install GNU Sed: http://bugs.php.net/fix.php?id=23001&r=gnused -- PHP Documentation Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php