1
0
mirror of https://github.com/nmap/nmap.git synced 2025-12-09 06:01:28 +00:00
Files
nmap/scripts
robert d50c58dcc1 Force a match against "^PHP/" (i.e. now with a trailing forward slash) to prevent the "Version from header" from incorrectly matching against the Set-Cookie header with the value "PHPSESSID". This should match PHP/2.x onwards; I'm not sure about earlier versions of PHP as I can't find any references.
This will no longer match against the generic "X-Powered-By: PHP" (rare?), but that never gave us a version number anyway, so you could consider that a bug too.

We don't currently check for variations such as "Zend Core/2.0.1 PHP/5.2.1", so that could be added in the future, but at least the http-headers script will reveal the X-Powered-By header anyway.
2011-01-30 11:15:48 +00:00
..
2011-01-28 17:54:49 +00:00
2010-09-21 17:31:17 +00:00
2010-08-16 18:59:30 +00:00
2010-07-19 16:29:48 +00:00
2010-08-16 18:59:30 +00:00
2010-09-29 02:07:41 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-07-19 16:29:48 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2011-01-21 08:28:38 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2011-01-21 08:28:38 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2010-08-16 18:59:30 +00:00
2011-01-21 08:28:38 +00:00
2011-01-21 08:28:38 +00:00
2010-08-16 18:59:30 +00:00