vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   Missing or Invalid Security Token detected spam (https://vborg.vbsupport.ru/showthread.php?t=182997)

steven s 06-19-2008 09:53 PM

Missing or Invalid Security Token detected spam
 
These is what is being return to me via Andrea's mod
https://vborg.vbsupport.ru/showthread.php?t=177017

They are not being posted, but how are they able to begin to post?
Are they replying as a guest?

It also looks like they are trying to send a PM at the same time.


HTML Code:

Missing or Invalid Security Token detected.

Script Call Backtrace
=====================
#0 ../forum/includes/functions.php line 2592: eval()
#1 ../forum/includes/init.php line 417: fetch_error(security_token_missing,ltr,sendmessage.php)
#2 ../forum/global.php line 20: require_once(../forum/includes/init.php)
#3 ../forum/newreply.php line 82: require_once(../forum/global.php)

POST Variables
==============
Array
(
    [title] => In a crowded courtroom
    [message] => In a crowded courtroom in [url= spam url]wow gold[/url] Mississippi, a jury returns [url= spam url]wow gold[/url]

a shocking verdict against [url= ==spam url == ]wow power leveling[/url] a chemical company accused of dumping toxic waste into a small town's water

supply, causing the worst “cancer cluster” in history. The company [url= spam url/]wow power leveling[/url] appeals to the Mississippi Supreme Court,

whose nine justices will one day either approve the verdict [url= spam url /]wow power leveling[/url] or reverse it.weiwei1978123
    [wysiwyg] => 1
    [iconid] => 1
    [s] =>
    [do] => postreply
    [t] => 21753
    [p] => 170155
    [posthash] => 2f9d9d501126996ed71103b06498354c
    [poststarttime] => 1213904593
    [loggedinuser] => 5974
    [multiquoteempty] =>
    [sbutton] =>
    [signature] => 1
    [parseurl] => 1
    [emailupdate] => 9999
    [rating] => 5
    [threadid] => 21753
    [postid] => 170155
    [securitytoken] =>
)

Request URI
===========
/forum/newreply.php?do=postreply&t=21753


Dismounted 06-20-2008 10:24 AM

Make sure your templates (in this case, newreply?) have the security token embedded.

steven s 06-20-2008 12:43 PM

So is it possible that these spammers are actually registered?
Normally their keywords are caught by an addon and thrown into moderation.
These don't get that far.

Opserty 06-20-2008 12:46 PM

This looks like the userid of the whoever is trying to post: [minicode][loggedinuser] => 5974[/minicode]

steven s 06-20-2008 02:56 PM

Quote:

Originally Posted by Opserty (Post 1554492)
This looks like the userid of the whoever is trying to post: [minicode][loggedinuser] => 5974[/minicode]

Excellent. I hadn't noticed the user id number.
I checked and sure enough, he is registered. Odd that none of his posts have gone through.
At least this gave me time to ban him.


All times are GMT. The time now is 03:52 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.02201 seconds
  • Memory Usage 1,725KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_html_printable
  • (1)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (5)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete