Current time: 05-24-2012, 04:14 PM Hello There, Guest! (LoginRegister)


[B] Enter the code, get a blank page
11-08-2008, 05:56 AM (This post was last modified: 11-08-2008 05:59 AM by Imad Jomaa.)
Post: #1
[B] Enter the code, get a blank page
If you enter this code as the title of a private message, fill in the rest of the information and click send, you'll get a blank page:

Code:
"1or"1="1/><marquee>

The same goes for logging in, searching for users using the member list search engine, and posting new threads.

Can anyone recreate? Make sure you use the exact code I posted when trying to recreate it, otherwise you'll get something different.

PHP Developer - Hire Me
Clicktotweet.me
Find all posts by this user
11-08-2008, 06:13 AM
Post: #2
RE: Enter the code, get a blank page
I can't seem to reproduce on localhost, but it has that issue here (probably something related to the filtering system here).
Can you reproduce this on your own server/setups?
Visit this user's website Find all posts by this user
11-08-2008, 03:01 PM
Post: #3
RE: Enter the code, get a blank page
Confirmed...

[Image: destroyerjf8.jpg]

Give us your feedback about MyBB in this thread and become listed on the MyBB website.
Visit this user's website Find all posts by this user
11-08-2008, 04:54 PM (This post was last modified: 11-08-2008 04:59 PM by Imad Jomaa.)
Post: #4
RE: Enter the code, get a blank page
I was able to recreate a few times. However, I can't seem to reproduce it on my servers anymore. Furthermore. I conclude it's a problem with this site here.

PHP Developer - Hire Me
Clicktotweet.me
Find all posts by this user
11-08-2008, 08:45 PM (This post was last modified: 11-08-2008 08:48 PM by Ryan Gordon.)
Post: #5
RE: Enter the code, get a blank page
Intrusion Detection System for the win. Do it enough times and it'll kick ur a$$ Wink
Visit this user's website Find all posts by this user
11-08-2008, 09:12 PM
Post: #6
RE: [B] Enter the code, get a blank page
Haha. Toungue

PHP Developer - Hire Me
Clicktotweet.me
Find all posts by this user


Forum Jump:


User(s) browsing this thread: 1 Guest(s)

Contact Us | MyBB | Return to Top | Return to Content | Lite (Archive) Mode | RSS Syndication