Jump to content

SQL Dumpster


miseria

Recommended Posts

Hi there,

 

Almost 1 year ago, I asked for your opinions on http://www.sqldumpster.com. I took all opinions into account and cleaned up the website accordingly. I would appreciate your thoughts on the new-look website and give me pointers on improving functionality, content or design.

 

Many thanks,

 

Si King

Link to comment
https://forums.phpfreaks.com/topic/80176-sql-dumpster/
Share on other sites

SQL injection possible:

http://www.sqldumpster.com/search.php?t=%22asd&title=1&description=1&keywords=1&search=search&search=search

 

Putting a quote into the search box does the job.

 

SELECT * FROM sql_databases WHERE title LIKE "%"asd%" OR description LIKE "%"asd%" OR keywords LIKE "%"asd%" ORDER BY hits DESC: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'asd%" OR description LIKE "%"asd%" OR keywords LIKE "%"asd%" ORDER BY hits DESC' at line 1

 

Also - there is a drop-down menu generator. When I search for drop or menu etc. I get no search results.

 

Looks good, but I think the back ends needs more work.

 

-steve

Link to comment
https://forums.phpfreaks.com/topic/80176-sql-dumpster/#findComment-406838
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.