aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorAndreas Fischer <bantu@phpbb.com>2010-10-15 16:47:21 +0200
committerAndreas Fischer <bantu@phpbb.com>2010-10-15 16:47:21 +0200
commitd485664404d44bb371fd9b8a5b23ad8327cea302 (patch)
treeb05a8b594536395a318a31429a077cd450fd4ea2
parentb8f37a5024c3fbda51c76f3990e6dd2059892837 (diff)
downloadforums-d485664404d44bb371fd9b8a5b23ad8327cea302.tar
forums-d485664404d44bb371fd9b8a5b23ad8327cea302.tar.gz
forums-d485664404d44bb371fd9b8a5b23ad8327cea302.tar.bz2
forums-d485664404d44bb371fd9b8a5b23ad8327cea302.tar.xz
forums-d485664404d44bb371fd9b8a5b23ad8327cea302.zip
[ticket/9698] Add .htaccess to the includes subdirectory.
Add .htaccess to the includes folder to prevent full path disclosure when running PHP 5.3. When the error_reporting setting in php.ini contains the E_DEPRECATED error level, the PHP parser throws an error message containing the local filesystem path when accessing one of the captcha plugins directly. This is because the captcha plugins return explicit references for PHP 4 compatibility. PHPBB3-9698
-rw-r--r--phpBB/includes/.htaccess4
1 files changed, 4 insertions, 0 deletions
diff --git a/phpBB/includes/.htaccess b/phpBB/includes/.htaccess
new file mode 100644
index 0000000000..4128d345ab
--- /dev/null
+++ b/phpBB/includes/.htaccess
@@ -0,0 +1,4 @@
+<Files *>
+ Order Allow,Deny
+ Deny from All
+</Files>