Posts by author: Sebastian Fabry

ImpressCMS 1.3.11 - Why you should not trust PHP_SELF

6 min read 24 Mar 2020 by Sebastian Fabry
ImpressCMS is a free, community-driven content management system written in PHP, which considers itself to be secure, fast, and modular. This post shows us that inconspicuous variables may be under the influence of the user and thus can result in critical security vulnerabilities.