OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: bug in Invision Power Board[patch]

From: silent needle (silentneedlehotmail.com)
Date: Mon Aug 11 2003 - 07:33:33 CDT


In-Reply-To: <20030809082131.25004.qmailwww.securityfocus.com>

to patch the forum
all what you have to do
is adding these lines in the begining of admin.php
======admin.php======
<?php

if (strstr($adsess,"'") != NULL){
  echo "Silent Needle: i don't like you.<br>dont try to hack. :) [be a
white hat don't be a black hat]<br><a href='index.php'>index.php</a>";
  exit;
}
if (strstr($adsess,"\"") != NULL){
  echo "Silent Needle: i don't like you.<br>dont try to hack. :) [be a
white hat don't be a black hat]<br><a href='index.php'>index.php</a>";
  exit;
}
//.........
//rest of code
=====================
this work with me and i hope it work with you too.

Oh Long Night
greetz to: SP.IC, NetSpider, ARAB-HAK, zalaboza, C0NIk, and all
arabsecure.net t34m..

Silent Needle
member of ArabSecure.net t34m
silentneedlehotmail.com