PDA

View Full Version : VBBux/VBPlaza Question


evilknny9
04-11-2007, 11:16 PM
Ok so just a quick question, curious if anyone knows the answer...I have it set up so users earn points from points...my dilemma is this, if someone makes a spam/worthless post and I/one of my mods has to delete it, the points STAY in their account. Is there a way to automatically remove earned points when posts are removed so that they need not be done separately?

UltimateOreo!
04-11-2007, 11:56 PM
Well, you could start off by removing it until the exploits are fixed.

evilknny9
04-12-2007, 12:32 AM
nah I got the exploit [FIXED] copy that was even approved by the mods here.

HMBeaty
04-12-2007, 12:33 AM
nah I got the exploit [FIXED] copy that was even approved by the mods here.

News Flash: it was removed because the exploits were still there

tutusinghsohi
04-12-2007, 01:44 AM
News Flash: it was removed because the exploits were still there

lol.............

evilknny9
04-12-2007, 05:02 AM
either way, if I am correct the exploit is only really present in the Donate feature, and possibly in the "peripherals" which in reality i'm not even interested in and have them disabled.

Still though, my goal is not to argue about the security of my site...does anybody have an answer to my question?

Dismounted
04-12-2007, 05:11 AM
vbBux's implementation of removing points on deletion is flawed, it doesn't work. You will need to tweak that plugin to make it work. I have done it before but I don't have the code as I removed it from my board.

evilknny9
04-12-2007, 06:13 AM
that sucks cause I really don't feel like touching code right now :( I already had to go in last night and fix the whole postbit layout cause I didn't like it...

Marco van Herwaarden
04-12-2007, 03:29 PM
We have never said that the fixed version was secure, or that the only vulnerabilities are in the donation code.

evilknny9
04-12-2007, 10:09 PM
a) sorry, the guy who posted it up here the other day said it was "approved"

b) yeah you didn't say that, but from what i've seen, and heard from other sources i'm pretty sure that the exploits are only present within the "extra" features and not in simply the point/store system.

Marco van Herwaarden
04-13-2007, 10:57 AM
a) Please provide a link where a staff member said it was approved.
b) that conclusion is all yours.

evilknny9
04-14-2007, 12:59 AM
nah you misunderstood me...clearly no staff member approved it, now I know that, I meant that the original poster CLAIMED that it was approved (clearly he was lying).