Follow us on Twitter!
You cannot teach a man anything; you can only help him find it within himself. - Galileo
Saturday, April 19, 2014
Navigation
Home
HellBoundHackers Main:
HellBoundHackers Find:
HellBoundHackers Information:
Learn
Communicate
Submit
Shop
Challenges
HellBoundHackers Exploit:
HellBoundHackers Programming:
HellBoundHackers Think:
HellBoundHackers Track:
HellBoundHackers Patch:
HellBoundHackers Other:
HellBoundHackers Need Help?
Other
Members Online
Total Online: 27
Guests Online: 26
Members Online: 1

Registered Members: 82835
Newest Member: phanton2043
Latest Articles
View Thread

HellBound Hackers | Challenges | Other

Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 19:24
I win i got admin rights, it was kind of a joke. You have a serious programming error.




Edited by on 11-08-06 19:27
Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 20:04
i was there, as *****
there are some bugs and major errors like php injection ..
you need to review the email part.. i could insert code with injectioning..


Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 20:13
You need to change the forget password. Because anyone can change the password from any user.
Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 20:14
comando300 wrote:
You need to change the forget password. Because anyone can change the password from any user.


Way to give away the big highly unknown secret.Wink /sarcasm




Edited by on 11-08-06 20:18
Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 20:24
if you submit it over at my site http://www.fixedb. . .hacked.com me and my team will take a look at your site as well. Seems though you need to patch quite a few things from previous posts in this thread, but i will take a look and see what i can find.


Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 20:29
i have sql injected the "forgot password " so i think i have changed the beast Grin

good luck


Regards
:ninja:
Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 21:39
well for sql injections, make sure you put quotes around every thing like instead of:

$sql="SELECT * FROM table WHERE id=$id";

put this instead of above

$sql="SELECT * FROM `table` WHERE id='$id'";

also use the function addslashes() to make sure they can't put in ' or " in to mess up the query. what really helps is having magic_quotes turnen on in the php.ini file however you may not have access to that since you are on a free hosting site.




Author

RE: Need testers on my website


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 11-08-06 21:39
Got msn