Jump to content

Recommended Posts

Hello,

 

I just beta launched my new site www.tutorialstuff.com/ and would love if people would test it out and tell me what they think.

 

This is pretty much a PHP/MySQL driven site that I will be creating a custom CMS for soon.

 

Questions/comments on coding, speed, design are all appreciated.

 

 

Link to comment
https://forums.phpfreaks.com/topic/49451-tutorial-site-check/
Share on other sites

Wow. You brought to my attention a couple things I've never seen before.

 

When you say you logged in using <marquee>, what does that mean? Is this a potential security risk?

 

Same question for htmlentities?

 

I will research both of these myself but I would like to hear what you have to say about it.

 

Thanks very much! - Mike

Link to comment
https://forums.phpfreaks.com/topic/49451-tutorial-site-check/#findComment-242593
Share on other sites

Well I made a user called <marquee> which kind of spoiled up the Userbox in top-right corner. But none of the things I've mentioned have any security risk at all, otherwise I wouldn't have posted it in public.

 

When you print out $_GET[category] you should use: $gategory = htmlentities($_GET[category]);

This way < > are made to < > - But as said it doesn't have any security risk.

 

 

 

 

 

Link to comment
https://forums.phpfreaks.com/topic/49451-tutorial-site-check/#findComment-242618
Share on other sites

Thanks! You really were freaking me out. I saw your IP addy of 67.81.3x.xxx in some of my stats logs and I thought I was getting hacked big time!

 

Any advice on how to fix the blind SQL injection? I ahven't found any useful info on that yet.

 

Also, do oyuh ave a site or portfolio of your work? I would be really interested to see what a person with your talent is capable of!

 

Thanks again - Mike

Link to comment
https://forums.phpfreaks.com/topic/49451-tutorial-site-check/#findComment-243030
Share on other sites

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.