<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Nginx + PHP CGI的一个可能的安全漏洞</title>
	<atom:link href="http://www.laruence.com/2010/05/20/1495.html/feed" rel="self" type="application/rss+xml" />
	<link>http://www.laruence.com/2010/05/20/1495.html</link>
	<description>PHP语言, PHP扩展, Zend引擎相关的研究,技术,新闻分享 - 左手代码 右手诗</description>
	<lastBuildDate>Thu, 09 Feb 2012 12:31:57 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
	<item>
		<title>By: Nginx(PHP/fastcgi)的PATH_INFO问题 » ijser</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-5403</link>
		<dc:creator>Nginx(PHP/fastcgi)的PATH_INFO问题 » ijser</dc:creator>
		<pubDate>Fri, 18 Nov 2011 07:00:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-5403</guid>
		<description>[...] 最近发现的一个安全漏洞(Nginx + PHP CGI的一个可能的安全漏洞)和这个配置有关系, 请大家务必在使用第二种配置的时候,关闭cgi.fix_pathinfo. [...]</description>
		<content:encoded><![CDATA[<p>[...] 最近发现的一个安全漏洞(Nginx + PHP CGI的一个可能的安全漏洞)和这个配置有关系, 请大家务必在使用第二种配置的时候,关闭cgi.fix_pathinfo. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4909</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Tue, 13 Sep 2011 10:34:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4909</guid>
		<description>我试了，我的nginx/0.7.67版本没有这个问题</description>
		<content:encoded><![CDATA[<p>我试了，我的nginx/0.7.67版本没有这个问题</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: nginx php fpm紧急漏洞修复！cgi.fix_pathinfo &#8211; www.ncun123.com博客</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4736</link>
		<dc:creator>nginx php fpm紧急漏洞修复！cgi.fix_pathinfo &#8211; www.ncun123.com博客</dc:creator>
		<pubDate>Wed, 10 Aug 2011 10:32:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4736</guid>
		<description>[...] PS: 鸣谢laruence大牛在分析过程中给的帮助 [...]</description>
		<content:encoded><![CDATA[<p>[...] PS: 鸣谢laruence大牛在分析过程中给的帮助 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: PATH_INFO是一个CGI 1.1的标准，经常用来做为传参载体. &#8211; www.ncun123.com博客</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4735</link>
		<dc:creator>PATH_INFO是一个CGI 1.1的标准，经常用来做为传参载体. &#8211; www.ncun123.com博客</dc:creator>
		<pubDate>Wed, 10 Aug 2011 07:49:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4735</guid>
		<description>[...] 最近发现的一个安全漏洞(Nginx + PHP CGI的一个可能的安全漏洞)和这个配置有关系, 请大家务必在使用第二种配置的时候,关闭cgi.fix_pathinfo. [...]</description>
		<content:encoded><![CDATA[<p>[...] 最近发现的一个安全漏洞(Nginx + PHP CGI的一个可能的安全漏洞)和这个配置有关系, 请大家务必在使用第二种配置的时候,关闭cgi.fix_pathinfo. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: nginx文件类型错误解析漏洞 &#124; 一沙一世界 一花一天堂</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4585</link>
		<dc:creator>nginx文件类型错误解析漏洞 &#124; 一沙一世界 一花一天堂</dc:creator>
		<pubDate>Sun, 10 Jul 2011 05:34:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4585</guid>
		<description>[...] 鸣谢laruence大 [...]</description>
		<content:encoded><![CDATA[<p>[...] 鸣谢laruence大 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Penetration Testing Lab &#8250; Nginx Security Law</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4135</link>
		<dc:creator>Penetration Testing Lab &#8250; Nginx Security Law</dc:creator>
		<pubDate>Sat, 09 Apr 2011 01:58:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4135</guid>
		<description>[...] [1]http://hi.baidu.com/yuange1975/blog/item/4c223031a6727eaf5edf0e46.html [2]http://www.laruence.com/2010/05/20/1495.html   This was written by admin. Posted on Friday, May 21, 2010, at 12:51 pm. Filed under Exploit. [...]</description>
		<content:encoded><![CDATA[<p>[...] [1]http://hi.baidu.com/yuange1975/blog/item/4c223031a6727eaf5edf0e46.html [2]http://www.laruence.com/2010/05/20/1495.html   This was written by admin. Posted on Friday, May 21, 2010, at 12:51 pm. Filed under Exploit. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: nginx文件类型错误解析漏洞 &#124; Seczone</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4114</link>
		<dc:creator>nginx文件类型错误解析漏洞 &#124; Seczone</dc:creator>
		<pubDate>Mon, 04 Apr 2011 13:49:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4114</guid>
		<description>[...] PS: 鸣谢laruence大牛在分析过程中给的帮助 [...]</description>
		<content:encoded><![CDATA[<p>[...] PS: 鸣谢laruence大牛在分析过程中给的帮助 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wiki</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-4093</link>
		<dc:creator>Wiki</dc:creator>
		<pubDate>Fri, 01 Apr 2011 11:49:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-4093</guid>
		<description>&lt;a href=&quot;http://hu.wikipedia.org/wiki/Kezd%C5%91lap&quot; rel=&quot;nofollow&quot;&gt;Wiki&lt;/a&gt; is a very useful page.</description>
		<content:encoded><![CDATA[<p><a href="http://hu.wikipedia.org/wiki/Kezd%C5%91lap" rel="nofollow">Wiki</a> is a very useful page.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DADSA</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3982</link>
		<dc:creator>DADSA</dc:creator>
		<pubDate>Tue, 22 Mar 2011 15:45:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3982</guid>
		<description>DASASDSA</description>
		<content:encoded><![CDATA[<p>DASASDSA</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hosting</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3965</link>
		<dc:creator>hosting</dc:creator>
		<pubDate>Mon, 21 Mar 2011 01:20:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3965</guid>
		<description>This is awsome water text effect :())</description>
		<content:encoded><![CDATA[<p>This is awsome water text effect <img src='http://www.laruence.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> ))</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 搜索引擎优化</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3558</link>
		<dc:creator>搜索引擎优化</dc:creator>
		<pubDate>Thu, 23 Dec 2010 09:27:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3558</guid>
		<description>试一下这代码，验证一下~</description>
		<content:encoded><![CDATA[<p>试一下这代码，验证一下~</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wholesale Caps</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3458</link>
		<dc:creator>Wholesale Caps</dc:creator>
		<pubDate>Mon, 22 Nov 2010 09:33:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3458</guid>
		<description>beautiful.we are waiting for you.</description>
		<content:encoded><![CDATA[<p>beautiful.we are waiting for you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cheap Hats</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3457</link>
		<dc:creator>Cheap Hats</dc:creator>
		<pubDate>Mon, 22 Nov 2010 09:32:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3457</guid>
		<description>it`s worth to try.</description>
		<content:encoded><![CDATA[<p>it`s worth to try.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: youstar &#187; 80后爆nginx 0day漏洞,测试可行~</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3319</link>
		<dc:creator>youstar &#187; 80后爆nginx 0day漏洞,测试可行~</dc:creator>
		<pubDate>Wed, 13 Oct 2010 02:02:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3319</guid>
		<description>[...] Laruence：Nginx + PHP CGI的一个可能的安全漏洞：连接 [...]</description>
		<content:encoded><![CDATA[<p>[...] Laruence：Nginx + PHP CGI的一个可能的安全漏洞：连接 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: film izle</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3283</link>
		<dc:creator>film izle</dc:creator>
		<pubDate>Tue, 28 Sep 2010 14:18:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3283</guid>
		<description>thanks you , All are nice t-shirts the color combination is good.</description>
		<content:encoded><![CDATA[<p>thanks you , All are nice t-shirts the color combination is good.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: new era hats</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3253</link>
		<dc:creator>new era hats</dc:creator>
		<pubDate>Mon, 20 Sep 2010 01:14:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3253</guid>
		<description>Hi,verybody,I will come again.</description>
		<content:encoded><![CDATA[<p>Hi,verybody,I will come again.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3168</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Mon, 06 Sep 2010 20:17:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3168</guid>
		<description>if ($request_filename ~* (.*)\\.php) {
                 set $php_url $1;
             }
             if (!-e $php_url.php) {
                 return 403;
             }





blog:blog.sina.com.cn/harleychen</description>
		<content:encoded><![CDATA[<p>if ($request_filename ~* (.*)\\.php) {<br />
                 set $php_url $1;<br />
             }<br />
             if (!-e $php_url.php) {<br />
                 return 403;<br />
             }</p>
<p>blog:blog.sina.com.cn/harleychen</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Trail&#39;s Blog &#187; Nginx(PHP/fastcgi)的PATH_INFO问题</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-3064</link>
		<dc:creator>Trail&#39;s Blog &#187; Nginx(PHP/fastcgi)的PATH_INFO问题</dc:creator>
		<pubDate>Fri, 06 Aug 2010 06:52:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-3064</guid>
		<description>[...] 最近发现的一个安全漏洞(Nginx + PHP CGI的一个可能的安全漏洞)和这个配置有关系, 请大家务必在使用第二种配置的时候,关闭cgi.fix_pathinfo. [...]</description>
		<content:encoded><![CDATA[<p>[...] 最近发现的一个安全漏洞(Nginx + PHP CGI的一个可能的安全漏洞)和这个配置有关系, 请大家务必在使用第二种配置的时候,关闭cgi.fix_pathinfo. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SerranoMaritza33</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-2#comment-2992</link>
		<dc:creator>SerranoMaritza33</dc:creator>
		<pubDate>Mon, 26 Jul 2010 22:23:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-2992</guid>
		<description>Following my own exploration, thousands of persons on our planet receive the &lt;a href=&quot;http://bestfinance-blog.com/topics/personal-loans&quot; rel=&quot;nofollow&quot;&gt;personal loans&lt;/a&gt; from good banks. Therefore, there&#039;s great possibilities to receive a car loan in all countries.</description>
		<content:encoded><![CDATA[<p>Following my own exploration, thousands of persons on our planet receive the <a href="http://bestfinance-blog.com/topics/personal-loans" rel="nofollow">personal loans</a> from good banks. Therefore, there&#8217;s great possibilities to receive a car loan in all countries.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: nginx文件类型错误解析漏洞 &#124; 会跳舞的鞋子</title>
		<link>http://www.laruence.com/2010/05/20/1495.html/comment-page-1#comment-2974</link>
		<dc:creator>nginx文件类型错误解析漏洞 &#124; 会跳舞的鞋子</dc:creator>
		<pubDate>Fri, 23 Jul 2010 07:29:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.laruence.com/?p=1495#comment-2974</guid>
		<description>[...] 鸣谢laruence大牛在分析过程中给的帮助       这篇日志发表于 Jul 22nd, 2010 08:31 于分类 [...]</description>
		<content:encoded><![CDATA[<p>[...] 鸣谢laruence大牛在分析过程中给的帮助       这篇日志发表于 Jul 22nd, 2010 08:31 于分类 [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

