vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin 3.0 Full Releases (https://vborg.vbsupport.ru/forumdisplay.php?f=33)
-   -   HTTP Upload Hack (https://vborg.vbsupport.ru/showthread.php?t=64680)

Pseudomizer 05-02-2004 10:00 PM

HTTP Upload Hack
 
Hi @LL,

UPDATE:

This version is now obsolete. I have just posted the next version for this upload hack. You can find it here.

This version will no longer be supported !!!


many people requested this hack and many people wanted to have it independant of VBulletin. Due to this i created this simple hack which uploads files via HTTP.

Copy both files in the same directory where you want to upload files into it. This works only in the same directory. So you can not choose where to put the files. It just uploads the files.

I have added a little bit security to this because many people will try to use this as soon as they know about it. The config file has the login and the password to log into the script.

In addition to this i have made this session depending. You can not call specific subroutines of this script without having logged in properly. As soon as you close your browser and you try to call subroutines you will be blocked.

I have also implemented a small check for existing files. It will deny the upload if you want to upload a file which already exists. With this you will be on the secure side so no one overwrites any important file with rubbish.

This has nothing to do with VBulletin but many people requested this as part of their administrative work.

I take no responsibility for this hack !!! If someone finds a security hole or a bug and something happens i will not be responsible for any damage !!!

After reading the rules for VBulletin.org this hack could be removed due to not cooperating with VBulletin. So it is up to the staff of VBulletin.org to decide to remove this hack or to follow the demands of their members and leave it. I just want to help some members here and i hope i do not cause any trouble with this hack.

Enjoy it.

Cheers,

FleaBag 05-03-2004 02:15 AM

How would I go about removing the overwrite check mate? I'd like to use this for offering some very simple web-hosting for my members.

deathemperor 05-03-2004 06:16 AM

well, this is cool, I was creating a script like this but couldn't figure out all I need.
can you limit file type ? I'd like to let my users upload just image and zip file.
/me clicks install.

Pseudomizer 05-03-2004 09:53 AM

To both of your questions: Yes, but this would take some time if i would go for it.

Cheers,

MentaL 05-03-2004 10:03 PM

would be better without id and password support and additional extension support =P .. ide use it then ^____^

Pseudomizer 05-03-2004 10:46 PM

Quote:

Originally Posted by mentalrz
would be better without id and password support and additional extension support =P .. ide use it then ^____^

What do you mean with addtional extension support ? You can upload whatever you want. Please specify.

Cheers,

Pseudomizer 05-04-2004 12:18 AM

Ok guys.

Some people do not want the password protection and some people do not want to upload every filetype. :paranoid:

So.... :bandit:

If i :
- build in one switch to enable or disable the password protection in the config file
- build in file extension definition which files are allowed to be uploaded in the config file

Would this be what you all need ? :chinese:

Cheers,

FleaBag 05-04-2004 12:45 AM

It would be a useful. :)

deathemperor 05-04-2004 02:47 AM

I need both of that, uploading a file shouldn't cause much trouble like logging and if letting user upload any type of file, they could be the new owner of that host.

webrats 05-04-2004 03:13 AM

can you make it rename the filename when it uploads but keep the extension

also maybe allow multiple uploads? and have the preformated [img] tags on the display of what was uploaded?


All times are GMT. The time now is 03:10 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01074 seconds
  • Memory Usage 1,732KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (1)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete