General Information

PHP Local File Inclusion

Variants:
Direct Persistent Session 

Vector Type:
Attack

Relevance:
Technology Specific

Layer:
Application-Level

Platforms:
PHP

Target Type:
Web Application

Affected Mechanisms:
Input Validation, Secure Design

Invented In:
07/02/2001

Added In:
11/01/2015


Vector Operation Method:
Malicious inputs can introduce malicious content or malicious local server code into the application


Direct Variant:

PHP Local File Inclusion

Variant Title:
PHP Local File Inclusion

Typical Severity:
Major

Learn More:





Persistent Variant:

Stored PHP Local File Inclusion

Also Known As:
Persistent PHP Local File Inclusion

Typical Severity:
Major

Resources:

White Papers:

Learn More:


Session Variant:

PHP Local File Inclusion via Session Puzzling

Also Known As:
Session PHP Local File Inclusion

Typical Severity:
Major

Resources:

White Papers:

Learn More: