Home Community Mys-Script Creative Off-Topic |
|
|
Thread Tools | Display Modes |
#11
|
|||
|
|||
RE: Rename adoptables (Updated!!)
*****CAUTION********
I used this today.. worked great.. went out, .. came home.., GREY SCREEN!! I call my host for that site & asked.. they found a hack entry from the script!! They fixed the issue on ALL pages & emailed me some info on protection. I will read the email in the morning & give for info. But there is a security issue in the mod. Sea |
#12
|
|||
|
|||
RE: Rename adoptables (Updated!!)
It doesnt filter for SQL injections i bet...
|
#13
|
|||
|
|||
RE: Rename adoptables (Updated!!)
I included this
PHP Code:
Edit: Maybe this will protect it? Adding this to functions.php: PHP Code:
PHP Code:
What do you think Rsmiley? It certainly does not hurt anything. |
#14
|
|||
|
|||
RE: Rename adoptables (Updated!!)
It should be quite secure. I doubt it would be exploitable after that has been added.
You are safe with that added |
#15
|
|||
|
|||
RE: Rename adoptables (Updated!!)
Quote:
PHP Code:
Code:
$newname = $_POST["newname"]; PHP Error Message Parse error: syntax error, unexpected T_IF in /home/---------/public_html/rename2.php on line 78 Free Web Hosting" |
#16
|
|||
|
|||
RE: Rename adoptables (Updated!!)
No, don't do that.
Add PHP Code:
PHP Code:
|
#17
|
|||
|
|||
RE: Rename adoptables (Security issue fixed!)
^
All done, thanks =) |
#18
|
|||
|
|||
RE: Rename adoptables (Security issue fixed!)
Cool :) Thanks for the fix
:) Sea ***EDIT*** **FYI** This is an edit just because I do tend to hear things. I have just heard a rumor that Soleria stole code, just because they used this script without changing the Digimon reference. I corrected the person before they took this rumor further, but that is how easy rumors can start in this field. So please make sure you offer generic scripts & those using the scripts make sure you check them for issues like this. Sea |
#19
|
|||
|
|||
RE: Rename adoptables (Security issue fixed!)
Yes I did change this to be more generic.
|
#20
|
|||
|
|||
RE: Rename adoptables (Security issue fixed!)
I'm sorry Kisazeky, when I said "you" I really didn't mean YOU. I know you had made the change to be more generic. :) I was just meaning "you" in general to anyone who might offer a script or design so that some unsuspecting site didn't get in trouble for something they didn't do. :)
Sea |
|
|
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
Mysidia Adoptables v1.3.4[Security Release] | Hall of Famer | Mysidia Adoptables Official Announcement | 77 | 08-20-2020 02:58 PM |
Mysidia Adoptables v1.3.1[Security Release] | Hall of Famer | Mysidia Adoptables Official Announcement | 109 | 08-24-2012 04:50 AM |
Mysidia Adoptables v1.3.0[Security Release] | Hall of Famer | Mysidia Adoptables Official Announcement | 180 | 04-01-2012 10:16 PM |
Mysidia Adoptables v1.2.3[Security Release] | Hall of Famer | Mysidia Adoptables Official Announcement | 38 | 10-29-2011 12:26 PM |
Opinions and Suggestions (Security issue inside) | nobackseat | Feedback and Suggestions | 13 | 02-07-2011 12:17 AM |
What's New? |
What's Hot? |
What's Popular? |