What is Code Injection?

PHP Injection or ASP Injection refer to various types of code injection attacks that allow an attacker to supply code to the server side scripting engine. In the case of PHP Injection, the server side scripting engine is PHP.

In practice, PHP Injection is either the exploitation of "Dynamic Evaluation Vulnerabilities," "Include File Injection," or similar code injection vulnerabilities. 

An eval injection vulnerability occurs when an attacker can control all or part of an input string that is fed into an eval () function call.

