View Single Post
Old 04-17-2008, 03:07 PM  
jimbona
Confirmed User
 
Join Date: Jan 2007
Posts: 190
It might just be me, but reviewing the source it seems its open to injection via _GET and _POST data as it is loaded directly into the SQL queries so hackers will have a field day with this like other free scripts with uncleansed data to SQL.
__________________
Thanks
Paul
Thunder-Ball.net - Member
jimbona is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote