Quote:
Originally Posted by MikeTrin
I'd highly advise anyone thinking putting this mod on a high traffic forum to NOT DO IT while it's still in BETA.
There are a lot of bug in here and one pretty serious security flaw.
Here's the security flaw, users can craft a link that takes money from people by issuing the following:
http:\\yourforums\casino.php?do=donate&recipients=[FORUM USER NAME]&amount=1000
|
I have the Donations turned off in the AdminCP... I tried this and it gave me the "you don't have access" page. I haven't done any further testing. But if what you say is true, just turn off the Donations in the AdminCP and it is fixed!
And there are alot of bugs in ALL mods and programs... but I wouldn't discredit just one mod because of that. however, I wouldn't recommend installing any mod or program on any high traffic site unless it is tested prior...