The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
||||
|
||||
Anyone know what this weird error is?
We haven't had any errors in awhile, just seems strange.
PHP Code:
|
#2
|
||||
|
||||
'bell_o'reily9215@internetmarketerthemes.com'
that is causing the error code. the ' mark. |
#3
|
||||
|
||||
Any idea on how to fix this? Thanks for the reply.
|
#4
|
||||
|
||||
take the ' out of the email address. he will have to use another email to join nirc.
|
Благодарность от: | ||
Disco_Dave |
#5
|
||||
|
||||
Or fix the query to accept the ' (use addslashes(htmlspecialchars_uni ? Sorry, it's been a while since I've done that.)
|
#7
|
||||
|
||||
I highly recommend you get someone who knows how to securely handle queries to fix your code because as it is, anyone can easily drop any table in your database.
If you're the one one that coded it, simply pass your email variable through the $vbulletin->db->escape_string() function |
#8
|
|||
|
|||
The ip belongs to a spam bot i see
|
#9
|
||||
|
||||
If this code is vulnerable, then the mod needs to be grave yarded, https://vborg.vbsupport.ru/showthread.php?t=294164
--------------- Added [DATE]1387505631[/DATE] at [TIME]1387505631[/TIME] --------------- Which I see it now is, 'quarantined' |
Благодарность от: | ||
CAG CheechDogg |
#10
|
||||
|
||||
Yes I have quarantined the mod and informed the author of a security issue. I recommend anyone with this mod installed, disable it in product manager until an update is released.
|
Благодарность от: | ||
ozzy47 |
Thread Tools | |
Display Modes | |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|