vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   Ajax issue (https://vborg.vbsupport.ru/showthread.php?t=178893)

dancue 05-11-2008 05:21 PM

Ajax issue
 
I've tried doing this myself, but have not had any success. I went to the Implementing CSRF thread and tried to follow the directions there, but I could not figure it out.

I'm thinking the solution is the second post by Dismounted, but I don't know where to begin.
How do I find?
Quote:

AJAX requests using POST
What should I be looking for?

The mod in question is itsid's hide hack. For those of you willing to help I can give you any information you need to guide me.

thanks.

Lynne 05-12-2008 04:06 AM

Have you looked in the modification thread yet? Many authors are posting the exact things to fix in the thread.

dancue 05-12-2008 12:26 PM

Author hasn't been online for a while.

There are about 600+ installations and many people frustrated on that thread...lol

It's supposed to be an easy fix, implementing this CSRF, but I'm not a coder and I don't know the first place to look.

Lynne 05-12-2008 03:25 PM

This is the thread that explains what to do: Implementing CSRF Protection in modifications

dancue 05-12-2008 06:45 PM

lol, I know.

The second post of that thread is what I think needs to be done. I posted on that thread for some support, but have not received an answer.

I just don't know how to apply his example in my scenario. Completely lost.

I, as well as many others, would love a solution to this. It just seems that unless you are a coder yourself, any mod that has been abandoned is now stuck in the graveyard due to this CSRF issue.

--------------- Added [DATE]1210648668[/DATE] at [TIME]1210648668[/TIME] ---------------

If it helps, this is the e-mail notification (per Andrea's hack) notifying me of the security token error...

Quote:

Missing or Invalid Security Token detected.

Script Call Backtrace
=====================
#0 /home/hipho13/public_html/forum/includes/functions.php line 2528: eval()
#1 /home/hipho13/public_html/forum/includes/init.php line 417:
fetch_error(security_token_missing,ltr,sendmessage .php)
#2 /home/hipho13/public_html/forum/global.php line 20:
require_once(/home/hipho13/public_html/forum/includes/init.php)
#3 /home/hipho13/public_html/forum/showthread.php line 102:
require_once(/home/hipho13/public_html/forum/global.php)
#4 /home/hipho13/public_html/forum/vbseo.php line 1129:
require(/home/hipho13/public_html/forum/showthread.php)

POST Variables
==============
Array
(
[do] => whatever
[p] => 726
[all] => 726
[postid] => 726
[securitytoken] =>
)

Request URI
===========
/forum/showthread.php

dancue 05-14-2008 12:08 PM

Anyone care to help me with this?

Lynne 05-14-2008 02:34 PM

You really need to get help in the modification thread. We don't know what the code looks like and that is what we would need to look at in order to fix this. The people in the modification thread know the code and are best able to figure out where to modify it to fix this.

dancue 05-14-2008 04:09 PM

No luck there either. That mod should be in the graveyard with the lack of support it's receiving.

thanks, anyway. I will see if I can figure it out on my own, or if someone is willing to dive into this for me.


All times are GMT. The time now is 08:18 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01145 seconds
  • Memory Usage 1,726KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (2)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (8)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete