View Single Post
Old 04-17-2008, 03:40 PM  
farkedup
Confirmed User
 
Join Date: Nov 2007
Location: Kalamazoo, MI
Posts: 2,490
Quote:
Originally Posted by jimbona View Post
It might just be me, but reviewing the source it seems its open to injection via _GET and _POST data as it is loaded directly into the SQL queries so hackers will have a field day with this like other free scripts with uncleansed data to SQL.
sorry it is, I was using a REALLY old codebase of mine. I'll have that fixed up in like 20 minutes or so ;)
__________________
-- QUOTE ME IT MAKES ME FEEL SPECIAL --
farkedup is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote