Home / Vulnerability Database / PHP : Resource injection
PHP

PHP : Resource injection

Classification

Overview

Using data from an untrusted source to identify the resource allows an attacker to view or modify protected system resources.

The injection when working with resources (resource injection) occurs when an attacker can specify the identifier to access the system resources (for example, the port number for the network resource access). This allows him/her in particular to transfer valuable data to a third party server.

Injection vulnerabilities take the first place in the “OWASP Top 10 2017” web-application vulnerabilities ranking.

MEDIUM

DerScanner Severity Score

Do you want to fix PHP : Resource injection in your application?

See also

PHP

PHP : Null salt

PHP

PHP : Empty password

PHP

PHP : Empty salt