Quote:
Originally Posted by WhSox21
Very odd. Let me look into this.
|
Any chance the fixes are complete. I dunno if you have heard this from "Deaths" (original post -
https://vborg.vbsupport.ru/showthrea...light=helpdesk)
Quote:
Originally Posted by Deaths
I strongly _NOT_ recommend this hack, as it has some _SERIOUS_ security issues! ( https://vborg.vbsupport.ru/showpost....&postcount=451 as an example)
He says he'll fix it, but this would be the second fix for the same bug, and I don't think he'll every be able to patch it.
PS I've found more than 5 security exploits, 4 of them each a different way of looking at other tickets, and 1 is an SQL injection.
|
SQL Injections are pretty bad, I have had a few of my sites compromised becasue of this. I am very interested your script for my hosting site, but wish not to have to deal with security holes. Any truths to this? And if Death hasn;t contacted you with his finds, message him, he should have reported them to you so you could fix them (if they do indeed exist that is)