Jump to content

TextScape


Username:

Recommended Posts

I'm making a game in PHP (I just started it yesterday, so keep in mind much isn't done) And so far I've done the following:

  • Registration + Login
  • AJAX Chat
  • Admin CP

 

I'm not sure how secure I've made it, but I've patched most security holes I'm aware of/found.

 

 

If you could, please try to hack it etc. THX

 

Proof of ownership:

65.75.244.181/lolgaem/proof.txt

 

 

Site:

65.75.244.181/lolgaem/

Link to comment
Share on other sites

  • 5 weeks later...

Not filling out the register form and clicking register gives..

 

Deprecated: Function eregi_replace() is deprecated in C:\wamp\www\lolgaem\register.php on line 11

Duplicate entry '' for key 'email'

 

I can also put an invalid email address in the register form, it seems to go through fine.

Link to comment
Share on other sites

Cross Site Scripting (XSS):

You can submit ">code in the subject field on the forum and it executes when viewing the forum index and the post.

http://65.75.244.181/lolgaem/forum/forum.php?board=clint

 

Cross Site Scripting (XSS):

When viewing the chats messages file directly code executes.

http://65.75.244.181/lolgaem/show-messages.php

Link to comment
Share on other sites

  • 5 months later...

Mod lock or delete this thread please? :)

I've discontinued the project.

 

And the site getting blocked for suspicious ads or whatever are from my host, not me.

 

Complain to ULMB with a picture of the ad if you like.

 

I've switched hosts to 000webhost anyway.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.