| |
phpBB-TweakS The easiest way to 'tweak' your phpBB! |
|
|
|
|
|
|
It appears you are using a browser that is not based on Internet Explorer, this means you are not viewing the web as good as you should be. Other browsers might try to immitate Internet Explorer, but none can parse the web as it should like Internet Explorer can. So view the web as it was meant to be with Avant Browser!
|
| |
|
|
All times are GMT - 5 Hours
|
|
 |
Sat Aug 13, 2005 2:23 pm |
 |
Author |
Message |
SirH New TweakeR

Joined: 13 Aug 2005 Posts: 7 Words Posted: 462 Average Post: 66.00
|
| Post subject: [Better Session Handling] hidden content is displayed |
|
|
Hi, sorry to bother you again ;-)
I noticed, that users (and even guests!) will see hidden threads and hidden boards - although the links won´t lead them to the content, these informations should not be displayed.
Imagine a thread in a hidden administration subforum: "User x behaves strange"... Nobody should be able to read the this title. |
|
| Post #1 |
|
|
 |
Sat Aug 13, 2005 2:58 pm |
 |
 |
Sat Aug 13, 2005 3:01 pm |
 |
 |
Sat Aug 13, 2005 3:12 pm |
 |
Author |
Message |
SirH New TweakeR

Joined: 13 Aug 2005 Posts: 7 Words Posted: 462 Average Post: 66.00
|
| Post subject: |
|
|
I noticed another security related thing:
Sometimes the action is displayed as "Index" with a link like that:
http: //forum.urlxy/index.php?sid=8574f2fe1814c2727b7e251329201f7f
Is this the session-Id of the specific user and shouldn´t it be secret? |
|
| Post #4 |
|
|
 |
Tue Aug 16, 2005 5:38 pm |
 |
 |
Fri Sep 23, 2005 3:32 pm |
 |
 |
Fri Sep 23, 2005 7:13 pm |
 |
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|
Protected by phpBB Security © phpBB-TweakS phpBB Security Has Blocked 3,237 Exploit Attempts.
· Archive · Sitemap: Index · Sitemap: Forums · Sitemap: Topics · Sitemap: Posts ·
:: [ Load Time: 2.8 Seconds ] :: [ 29 Queries ] :: [ 4,592 Page(s) Viewed Today ] :: :: [ Todays Queries: 137,972 ] :: [ Highest Load: 1,396,429 Queries On May. 08, 2007 ] :: :: [ SQL Load: 60% Time: 1.7 ] :: [ PHP Load: 40% Time: 1.1 ] :: [ Debug: On ] :: [ GZIP: Enabled ] :: :: The server last rebooted 81 days, 8 hours, 55 minutes, 21 seconds ago. ::
|
|
|
|
|
This page has been viewed 4,930,146 times, last viewed: Sat Sep 06, 2008 5:26 pm.
|
|
Powered by phpBB 2.0.* © 2001, 2002 phpBB Group
|
|
|
|
|
|
|
|
| |
|
|
|
|
|
|