Jump to content

Security Test Please


Zepo.

Recommended Posts

in the top left corner there is xss vuln (i search for <script>alert("xss");</script>) etc... then it gives mysql errors...

 

I noticed your VBULLETIN also seems to be out of date. There most likely have been security patches/checks/etc... may want to consider upgrading.

 

I go to say http://elitebattles.com/gamelist---1-War.html

and do the same search and I get a mysql display "Warning: mysql_num_rows(): supplied argument is not a valid MySQL result resource in /home/burly/public_html/pages/search.php on line 229"

 

http://elitebattles.com/files.html also same errror with same search...

 

http://elitebattles.com/games.html also

 

coding your own stuff is the way to go in the future..

Link to comment
Share on other sites

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.