php in post (Exec-PHP)

Discussion in 'Blogging' started by NigelC, Mar 5, 2007.

  1. #1
    Hi All,

    Are there any implications (security or other) with using a "php in post" plug-in such as Exec-PHP?

    I understand the issue with multiple posters, but ignoring that anyone got any info or something I can read on the subject?

    Also, if you were to access a DB from a post how would you go about doing it? Putting the user/password in the post itself seems dangerous (if you ever disable the plug-in then the world can see it), any suggestions?

    Thanks
     
    NigelC, Mar 5, 2007 IP