Pages:
Author

Topic: . - page 2. (Read 4051 times)

sr. member
Activity: 434
Merit: 250
June 02, 2013, 03:52:17 AM
#32
Wait, I am coding  Tongue

take as long as you need.
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:50:55 AM
#31
Wait, I am coding  Tongue
hero member
Activity: 686
Merit: 504
always the student, never the master.
June 02, 2013, 03:50:00 AM
#30
Dear rme , any simple coding will do.
*holds breath*
sr. member
Activity: 434
Merit: 250
June 02, 2013, 03:47:44 AM
#29
Dear rme , any simple coding will do.
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:40:11 AM
#28
.
sr. member
Activity: 434
Merit: 250
June 02, 2013, 03:38:27 AM
#27
Do you have any experience jsonrpc?

Yes, I know how to work with it.

some of your work please.
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:36:05 AM
#26
Do you have any experience jsonrpc?

Yes, I know how to work with it.
sr. member
Activity: 434
Merit: 250
June 02, 2013, 03:33:21 AM
#25
Do you have any experience jsonrpc?
hero member
Activity: 686
Merit: 504
always the student, never the master.
June 02, 2013, 03:28:06 AM
#24
Also, in line 111 of search.php you are not filtering this:
Code:
You are only stripping some characters, the recomendation is htmlspecialchars() and for sql querys mysql_real_escape_string()

fuck it. seems to have no effect on the database at all.
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:23:35 AM
#23
.
vip
Activity: 1316
Merit: 1043
👻
June 02, 2013, 03:21:46 AM
#22
@rme: You use mysqli, not mysql, right? Roll Eyes

EDIT: Or PDO.
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:19:56 AM
#21
.
vip
Activity: 1316
Merit: 1043
👻
June 02, 2013, 03:16:03 AM
#20
Are you escaping strings?
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:15:31 AM
#19
Grin

i see you can code php. you know anything about spinx search engine? its not php but i might be interested in using it to query my database. i hear it is much faster than php.

Sorry, I dont know about Spinx Search Engine.

PD: I found a bug in your website (N-Jin Bitcoin Search), try to search this:
Quote
2'%20or%20'1'='1
sql injection?

I believe, or maybe the search engine messing up with quotation marks.
hero member
Activity: 686
Merit: 504
always the student, never the master.
June 02, 2013, 03:14:10 AM
#18
Grin

i see you can code php. you know anything about spinx search engine? its not php but i might be interested in using it to query my database. i hear it is much faster than php.

Sorry, I dont know about Spinx Search Engine.

PD: I found a bug in your website (N-Jin Bitcoin Search), try to search this:
Quote
2'%20or%20'1'='1
sql injection?
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 03:09:34 AM
#17
Grin

i see you can code php. you know anything about spinx search engine? its not php but i might be interested in using it to query my database. i hear it is much faster than php.

Sorry, I dont know about Spinx Search Engine.

PD: I found a bug in your website (N-Jin Bitcoin Search), try to search this:
Quote
2'%20or%20'1'='1
hero member
Activity: 686
Merit: 504
always the student, never the master.
June 02, 2013, 03:02:19 AM
#16
Grin

i see you can code php. you know anything about spinx search engine? its not php but i might be interested in using it to query my database. i hear it is much faster than php.
rme
hero member
Activity: 756
Merit: 504
June 02, 2013, 02:59:55 AM
#15
 Grin
legendary
Activity: 3038
Merit: 1032
RIP Mommy
May 30, 2013, 01:27:13 AM
#14
rme
hero member
Activity: 756
Merit: 504
May 26, 2013, 01:32:39 PM
#13
Really love your title, made me smile =).

Bookmarked for future reference.

Thanks  Wink
Pages:
Jump to: