Welcome to mirror list, hosted at ThFree Co, Russian Federation.

github.com/phpmyadmin/phpmyadmin.git - Unnamed repository; edit this file 'description' to name the repository.
summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMarc Delisle <marc@infomarc.info>2012-03-28 20:39:39 +0400
committerMarc Delisle <marc@infomarc.info>2012-03-28 20:39:39 +0400
commitc51817d3b8cb05ff54dca9373c0667e29b8498d4 (patch)
tree80fd2d0bd6713bb2835aa354ecc1d620867a8536 /show_config_errors.php
parent5ac9f508a101c4667cb86067ee4a04e7afd399c1 (diff)
[security] Fixed local path disclosure vulnerability, see PMASA-2012-2
Diffstat (limited to 'show_config_errors.php')
-rw-r--r--show_config_errors.php4
1 files changed, 3 insertions, 1 deletions
diff --git a/show_config_errors.php b/show_config_errors.php
index 9024fec22d..7299a44249 100644
--- a/show_config_errors.php
+++ b/show_config_errors.php
@@ -14,6 +14,8 @@ error_reporting(E_ALL);
/**
* Read config file.
*/
-require CONFIG_FILE;
+if (is_readable(CONFIG_FILE)) {
+ require CONFIG_FILE;
+}
?>