View Full Version : Break This Script!
Tree
February 25th, 2006, 10:58
Go to http://www.vestieo.com and see if you can break that script (or just fool it).
If you want something else to do, go to http://www.vestieo.com/manage and try to break that script.
I'm trying to make this thing idiot proof, so do your worst :)
To register more than once, just hit the "Kill Cookie" button at the bottom.
If you do manage to break it, please post below.
monaghan
February 25th, 2006, 12:21
So how do you want it broken ?
If you post invalid data to it, you just get a blank page.
needlehost
February 25th, 2006, 12:36
sorry, I don't quite understand.. you want us to trick us into beliving were someone else?
use a proxy:)
Tree
February 25th, 2006, 12:59
So how do you want it broken ?
If you post invalid data to it, you just get a blank page.
Invalid how?
sorry, I don't quite understand.. you want us to trick us into beliving were someone else?
use a proxy
Proxies aside. I plan on getting an anti-proxy script sometime soon.
But can you make it give an error or something is what I mean.
I'm really more interested if someone can break the login script.
Canuckkev
February 25th, 2006, 13:35
I broke it:
Parse error: parse error, unexpected '=' in /home/neoncube/public_html/vestieo/index.php on line 17
Tree
February 25th, 2006, 14:38
That's when I was working on it. Try it now.
hottweelz
February 25th, 2006, 14:40
Cannot fetch array!
When signing up
monaghan
February 25th, 2006, 14:42
Invalid as in I copied your form and changed the data being posted to it, it returned a blank page.
Did you want it broken in another way ? SQL Injection or something else similiar ?
Tree
February 25th, 2006, 14:47
When signing up
Fixed.
Invalid as in I copied your form and changed the data being posted to it, it returned a blank page.
It should just return errors like "You must enter a valid age."
If you want to attempt SQL injection, feel free. If you succeed, please tell me how you did it :)
monaghan
February 25th, 2006, 15:00
<input type="hidden" name="done" value="no">
Result = blank page, no error
What is the actual point to this though ?
Tree
February 25th, 2006, 15:08
Not really any point to it, really. I was tired last night when I coded the bulk of this script.
I'll fix the error though (or lack of).
Powered by vBulletin® Version 4.1.7 Copyright © 2012 vBulletin Solutions, Inc. All rights reserved.