jandrox_ox Posted December 29, 2008 Share Posted December 29, 2008 The purpose of the web is for unregistered users to search organizations based on keywords and for registered users to edit, create, delete organizations, keywords, accounts, etc. There are no graphics yet, I know, I will take care of that later. You can access it through: http://citizensforsocialjustice.com/match/keywords/search (I am not interested on anything outside of folder .../match, anything in there is fair game). **There are two types of accounts, admins and organizations' owners. Here are two log in credentials for testing purposes Admin account (username,password): test1,test1 Organization's account (username,password): test2,test2 Please, do not destroy the site if you find something? If you can post what you found with a solution, it would be great. Also, if you can't find anything, could you please post it just so that I know the test was successful? Thanks in advance. Link to comment https://forums.phpfreaks.com/topic/138684-security-test-test-my-web-application/ Share on other sites More sharing options...
Coreye Posted December 29, 2008 Share Posted December 29, 2008 Please follow this post: http://www.phpfreaks.com/forums/index.php/topic,231599.0.html. Thanks, Corey. Link to comment https://forums.phpfreaks.com/topic/138684-security-test-test-my-web-application/#findComment-725081 Share on other sites More sharing options...
jandrox_ox Posted December 29, 2008 Author Share Posted December 29, 2008 Please follow this post: http://www.phpfreaks.com/forums/index.php/topic,231599.0.html. Thanks, Corey. Done, there is a link to my profile on the /keywords/search page. Link to comment https://forums.phpfreaks.com/topic/138684-security-test-test-my-web-application/#findComment-725088 Share on other sites More sharing options...
darkfreaks Posted December 29, 2008 Share Posted December 29, 2008 I shall abide by the new rule anyhow with identity established i can honestly say that is SQL injection free from what i was able to inject into the forms and you stayed away from doing ?variable=variable in your urls so i can't inject there. Link to comment https://forums.phpfreaks.com/topic/138684-security-test-test-my-web-application/#findComment-725168 Share on other sites More sharing options...
jandrox_ox Posted December 31, 2008 Author Share Posted December 31, 2008 Anyone else wants to give it a try? Link to comment https://forums.phpfreaks.com/topic/138684-security-test-test-my-web-application/#findComment-726704 Share on other sites More sharing options...
Recommended Posts