Thank you! I check the problem briefly. so, if I'm logged in to PHPmyadmin attackers somehow (how?) can inject SQL command. But I cannot understand how they do it. <br><br><div class="gmail_quote">2010/8/20 António P. P. Almeida <span dir="ltr"><<a href="mailto:appa@perusio.net">appa@perusio.net</a>></span><br>
<blockquote class="gmail_quote" style="margin: 0pt 0pt 0pt 0.8ex; border-left: 1px solid rgb(204, 204, 204); padding-left: 1ex;"><div class="im">On 20 Ago 2010 18h02 WEST, <a href="mailto:alexei@malinovski.org">alexei@malinovski.org</a> wrote:<br>
<br>
> [1 <multipart/alternative (7bit)>]<br>
> [1.1 <text/plain; ISO-8859-1 (quoted-printable)>]<br>
</div><div class="im">> And what is "Full-Disclosure ML"?<br>
<br>
</div><a href="http://seclists.org/fulldisclosure/" target="_blank">http://seclists.org/fulldisclosure/</a><br>
<div><div></div><div class="h5"><br>
--- appa<br>
<br>
_______________________________________________<br>
consulting mailing list<br>
<a href="mailto:consulting@drupal.org">consulting@drupal.org</a><br>
<a href="http://lists.drupal.org/mailman/listinfo/consulting" target="_blank">http://lists.drupal.org/mailman/listinfo/consulting</a><br>
</div></div></blockquote></div><br>