Author Topic: Forum Hacking  (Read 827 times)

0 Members and 1 Guest are viewing this topic.

Offline Brian

  • Administrator
  • Sea Dog
  • ****
  • Join Date: Jul 2007
  • Posts: 5776
  • Location: Kraaifontein, Cape Town
  • Prawns 21
    • capetownfishing.co.za
Forum Hacking
« on: November 19, 2010, 09:18:21 AM »
 :cross: :cross: :cross: :cross: don't these other mothers children ever stop?

733:      // Everything is ok, return an empty string.
734:      if (!isset($error))
735:         return '';
736:      // A session error occurred, show the error.
737:      elseif ($is_fatal)
738:      {
739:         if (isset($_GET['xml']))
740:         {
741:            ob_end_clean();
742:            header('HTTP/1.1 403 Forbidden - Session timeout');
743:            die;
744:         }
745:         else
746:            fatal_lang_error($error, isset($log_error) ? 'user' : false);
747:      }
748:      // A session error occurred, return the error to the calling function.
749:      else
750:         return $error;
751:   
752:      // We really should never fall through here, for very important reasons.  Let's make sure.
==>753:      trigger_error('Hacking attempt...', E_USER_ERROR);
754:   }
755:   
756:   // Check if a specific confirm parameter was given.
757:   function checkConfirm($action)
758:   {
759:      global $modSettings;
760:   
761:      if (isset($_GET['confirm']) && isset($_SESSION['confirm_' . $action]) && md5($_GET['confirm'] . $_SERVER['HTTP_USER_AGENT']) == $_SESSION['confirm_' . $action])
762:         return true;
763:   
764:      else
765:      {
766:         $token = md5(mt_rand() . session_id() . (string) microtime() . $modSettings['rand_seed']);
767:         $_SESSION['confirm_' . $action] = md5($token . $_SERVER['HTTP_USER_AGENT']);
768:   
769:         return $token;
770:      }
771:   }


I get about 5 of these a day  :cross: :cross: :cross: :cross: :cross: :cross: :cross: :cross: :cross: :cross:


Offline waynew

  • Administrator
  • Grand Mariner
  • ****
  • Join Date: Aug 2009
  • Posts: 1222
  • Location: GWD
  • Prawns 6
Re: Forum Hacking
« Reply #1 on: November 19, 2010, 10:09:08 AM »
Shame Brian!! if only us computer challenged guys understood this more we could really share in your pain!!  :sorry:

keep on winning the fight! :clap:
 
good job

Image Hosted by ImageShack.us