vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   safe SQL Injection query (https://vborg.vbsupport.ru/showthread.php?t=279552)

Goomzee 03-05-2012 07:09 AM

safe SQL Injection query
 
How do i know my site is safe from SQL Injection?

v123shine 03-05-2012 08:24 PM

Good Question!

Disasterpiece 03-05-2012 08:40 PM

How can I know that I'm safe from meteroids falling from the sky and hitting my head?

> If they do, you will know :)

v123shine 03-05-2012 08:51 PM

Quote:

Originally Posted by Disasterpiece (Post 2306539)
How can I know that I'm safe from meteroids falling from the sky and hitting my head?

> If they do, you will know :)

Good answer :) :) :)

Goomzee 03-06-2012 04:04 AM

Please reply someone

kh99 03-06-2012 12:02 PM

You probably can't know for sure. If you didn't write the software or inspect the code yourself then you're trusting the people who developed the software. I guess there have been issues in vbulletin itself, but I think if you have the latest version of vb you're probably pretty safe. But I think the more mods you have installed, the greater your chance that one of them has a flaw that hasn't been found yet.

What you might be able to do to detect it is look over web logs periodically and see if you see anything strange going on. There's also a add-on called zbblock that attempts to detect and block some sql injection, but I used it for a while and found that it also blocked some users who were just doing searches (although it was a year ago so it's possible that the issue has been fixed).


All times are GMT. The time now is 07:01 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01026 seconds
  • Memory Usage 1,717KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (6)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete