newsblog
Tue, 07 Feb 2012, 14:00 *
Welcome, Guest. Please login or register.

Login with username, password and session length
News: Hi gusy!
 
   Home   Help Search Login Register  
Pages: 1 [2] 3   Go Down
  Print  
Author Topic: WTF ERROR  (Read 3953 times)
0 Members and 1 Guest are viewing this topic.
punkt
personal space invader
Baistruc

Offline Offline

Gender: Male
Posts: 1 457



View Profile
« Reply #15 on: Mon, 16 Apr 2007, 08:25 »

ma rog, cum vreti, eu m-am oferit sa va ajut...
de ftp aveti nevoie doar la copierea fisierelor si de mysql doar la import... si conturi ftp si mysql nu pot sa va dau pentru ca nu e in puterea mea.
In fine cum considerati.
« Last Edit: Mon, 16 Apr 2007, 08:45 by punkt » Logged
Bloodaxe I ot that shit again. 3 times in a row.
yoshi pics or it never happened!
wooptoo Asta era inainte de mutare, sper sa nu se mai intample acum.
Bloodaxe *crosses fingers*
punkt
personal space invader
Baistruc

Offline Offline

Gender: Male
Posts: 1 457



View Profile
« Reply #20 on: Fri, 20 Apr 2007, 23:15 »

POSIBILA GAURA DE SECURITATE: SMF accepta imagini [edited]. E posibil ca intr-o astfel de imagine sa existe si alte comenzi/functii care pot dauna forumului... cum ar fi [edited]
Se poate rezolva la codul pentru [edited]


E posibil ca SMF-ul sa aiba o forma de protectie impotriva [edited], dar nu se stie niciodata

am editat in caz ca vede cineva din afara si ii vin idei tongue. oricum a vazut wooptoo, mission acomplished grin
« Last Edit: Sat, 21 Apr 2007, 00:13 by punkt » Logged
Bloodaxe Credeam ca forumurile nu accepta imagini dinamice by default o_O
punkt
personal space invader
Baistruc

Offline Offline

Gender: Male
Posts: 1 457



View Profile
« Reply #22 on: Fri, 20 Apr 2007, 23:40 »

depinde de forum... poate wooptoo a lasat activa acceptarea de imagini dinamice din admin panel... better turn it off daca e asa...
Logged
Bloodaxe so we have to blame wooptoo. right?
punkt smile)) guess so grin
Bloodaxe
* herself blames wooptoo
wooptoo
Baistruc

Offline Offline

Posts: 4 833


View Profile WWW
« Reply #26 on: Sat, 21 Apr 2007, 00:05 »

Si avatarurile folosesc aceeasi chestie:
Code:
[img]http://revolushii.ro/index.php?action=dlattach;attach=14;type=avatar[/img]
=>
Logged
punkt
personal space invader
Baistruc

Offline Offline

Gender: Male
Posts: 1 457



View Profile
« Reply #27 on: Sat, 21 Apr 2007, 00:12 »

^pentru scripturi locale e ok sa mearga... E nesigur atunci cand pui link-uri catre script-uri remote... o sa ma informez mai bine... se pare ca nu prea e posibila chestia cu sql injection dar stiu ca exista ceva riscuri....

am vazut ca nu e nici o setare pt imagini dinamice in admin panel... >.< so it's not wooptoo's fault tongue
Logged
yoshi nu cred ca sunt astia de la SMF asa de prosti incat sa lase gaura pt sql injection grin
wooptoo
Baistruc

Offline Offline

Posts: 4 833


View Profile WWW
« Reply #29 on: Sat, 21 Apr 2007, 01:31 »

nu cred ca sunt astia de la SMF asa de prosti incat sa lase gaura pt sql injection grin
Shiet knows. Nici PhpBB nu sta prea bine la capitolul securitate, deci oricum tot un drac e.
Logged
Pages: 1 [2] 3   Go Up
  Print  
 
Jump to:  

Designed by | Licensed under Creative Commons BY-NC-ND 3.0 | Powered by SMF 1.1.15 | SMF © 2011, Simple Machines