Donate to us via Paypal!
Your life is ending one minute at a time. If you were to die tomorrow, what would you do today?
Friday, October 30, 2020
Navigation
Home
 Find:
 Information:
Learn
Communicate
Submit
Shop
Challenges
 Exploit:
 Programming:
 Think:
 Track:
 Patch:
 Other:
 Need Help?
Other
Members Online
Total Online: 128
Guests Online: 124
Members Online: 4

Registered Members: 129508
Newest Member: dvx
Latest Articles

View Thread

HellBound Hackers | Computer General | Web hacking

Author

An offer to anyone who's bored...


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 30-03-07 06:19
So yeah, if you read my previous post that was like forever ago, I wrote a PHP guestbook, and I had people test it.

Well, so far its faired well, except for the file inclusion x.x .
So yeah, I still want to see if its vulnerable in some way. I've tested it myself, with no results, so I figure there are MANY people WAY better than me. So, if your bored, your welcome to try anything on it. If you find a vulnerability, would you either PM me on here, OR email me at [email protected]?
Edit: Oh lord, I forgot the link x.x
http://fatigue.freehostia.com/Guestbook.php
Thanks,

Fatigue




Edited by on 30-03-07 06:34
Author

RE: An offer to anyone who's bored...


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 30-03-07 09:45
I'd filter the inputs so it doesn't write the guestbook entry if any of the $_POST variables are not set or blank. I'm seeing a few completely blank ones there.
that's the only suggestion I have so far.


Author

RE: An offer to anyone who's bored...


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 30-03-07 23:57
Oh, thank you for the idea!