Quote:
Originally Posted by nexialys
yeap... but 99.99% of all the vBulletin sites are deactivating HTML for that exact reason, for once, and also, there is no session details in the cookie, just sessionID, the password is hashed... the system is more secure than you think. this basic html code is known for ages though...
|
What so with the cookies they coulnt log into your user?
Yeh but i can't see why vb woulnt block it :S