Page 1 of 1

fixed huge security flaw in archive

Posted: Sat Mar 04, 2006 2:57 pm
by Red Squirrel
Really, not sure how I missed this when I first coded that section. The bug allowed to view ANY forum, including the staff lounge. Topics themselves could not be read though, but topic titles could be seen. There was also a forum that was not added in as being private so I fixed that too.



Archived topic from Iceteks, old topic ID:4223, old post ID:34237

fixed huge security flaw in archive

Posted: Sat Mar 04, 2006 6:56 pm
by Triple6_wild
whoa that was fast lol

tho it may take a while to clear google's cashe ^^

Archived topic from Iceteks, old topic ID:4223, old post ID:34241

fixed huge security flaw in archive

Posted: Sat Mar 04, 2006 7:34 pm
by Red Squirrel
Yeah that may be a problem, but at least the only thing that was visible is titles and not the thread content. Funny that I thought of securing that but not the rest, though.

Archived topic from Iceteks, old topic ID:4223, old post ID:34244