security warning

Post your websites using myLounge redirection and comment them a little bit.

Moderator: Scooby

security warning

Postby Guest » Fri Apr 22, 2005 5:29 am

for you installed mylounge 1.4

pls note a security risk if you failed to sanitize user input on register.php
if user inputing a quote (') on email form.
eg. hgshgh'jhghg@jkhjhs.com

output : Warning: mysql_num_rows(): supplied argument is not a valid MySQL result resource in /home/lyp/public_html/myred/register.php on line 284

im only check lyp.nl
Guest
 

Postby Guest » Mon Apr 25, 2005 7:14 pm

...

this char is not allowed, so thats not a security risk ...
Guest
 


Return to Your redirection sites

Who is online

Users browsing this forum: No registered users and 7 guests

cron