Softpedia
 


SCRIPTS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Koken 0.8.2
  • ContentBox 1.5.2
  • jQPlayer 0.5.2
  • SPOILER ALERT! 0.0.2
  • jQuery Mask Plugin 0.9.0
  • Easing Slider 2.1.2
  • Btapp.js 0.2.0
  • WiiFlash 0.4.5
  • Breeze.js 1.3.3
  • TinyMCE Templates 3.0.2
  • Home > Scripts > PHP Classes

    PSecureImage v0.3

    download button


    Downloads: 170  Tell us about an update
    User Rating:
    Rated by:
    NOT RATED
    0 user(s)
    Developer:

    Website:

    License / Price:

    Platforms:

    Databases:

    Language:

    Last Updated:

    Category:
    Mesut Timur | More scripts
    code.google.com
    GPL - GNU General Public License 

    Windows / Linux / Mac OS / BSD / Solaris
    N/A
    PHP
    July 2nd, 2011, 14:03 GMT
    C: \ PHP Classes

     Read user reviews (0)  Refer to a friend  Subscribe

    PSecureImage description

    This is a PHP class for validating image files

    Can be used in web upload forms for detecting XSS or LFI attacks.

    In Internet Explorer, the developer can successfully launch XSS attacks with malformed image files because of it's mime-type detection algorithm.

    Also the image files can contain some server-side payloads that can be used on exploiting of LFI vulnerabilities.

    To prevent this, the class checks if the image is valid, and after that it cleans the EXIF section.

    It uses GD for these image operations and also doesn't leave the GD banner at the EXIF.

    Requirements:

    · PHP



    TAGS:

    image validation | security tool | prevent attack | validate | image | upload

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM