![]() |
Be careful, this mod allowed to enter any forum account without knowing the password, even logged in to the account of one of my managers and some members banned, so that the damage was not greater.
|
If you can demonstrate this then please PM details to the staff here so we can check it, Thanks.
|
Nice mod, but waiting until proven if it is exploitable or not.
That said, the phrase has a small typo: automaticly automatically <- corrected. :p VROEM! |
i have this problem when i install the product:
Warning: parse_url() expects exactly 1 parameter, 2 given in [path]/includes/init.php(298) : eval()'d code on line 3 |
@ Setokaiba (SW)
Can you please let me know how you were able to login to any account with this mod? The temporary login key that is generated is unique for every user. It should be at least as secure as any normal password. |
Quote:
Now it's disinstalled... i wait an answer... ;) |
I now see the second parameter of parse_url() was added in PHP 5.1.2.
http://www.php.net/manual/en/function.parse-url.php I will revise this script probably tomorrow for use on one of my own forums, and update this mod with a version that should be compatible with PHP 4. |
I need this feature
I was hoping approved "white space" would allow logging in from different domains |
A shame, people jump to false accusations with no data to back their claim up.
C'mon, show that it's exploitable, or apologize for being wrong. |
Quote:
|
All times are GMT. The time now is 07:09 AM. |
Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|