PSecureImage 0.3

PSecureImage is a PHP script to validating image files. It can be used in web upload forms for detecting XSS or LFI attacks. In Internet Explorer, the developer can successfully launch XSS attacks with malformed image files because of it's mime-type detection algorithm.

Also the image files can contain some server-side payloads that can be used on exploiting of LFI vulnerabilities. To prevent this, the script checks if the image is valid, and after that it cleans the EXIF section.

It uses GD for these image operations and also doesn't leave the GD banner at the EXIF.

License type: GPL
Date added: 4 years, 9 months 7 days ago | Last updated: 4 years, 9 months 5 days ago

More popular Validation

This is actually one of the most advanced image hosting script. The imagetize key features: SEO, Ads Ready, Admin

Listing Files

  • not_cleaned.jpg
  • 4.0 KB
  • 08/14/2008 01:42:07
  • bad.jpg
  • 33 Bytes
  • 08/14/2008 01:00:24
Hot Scripts