Jump to content
MakeWebGames

Recommended Posts

  • Replies 83
  • Created
  • Last Reply

Top Posters In This Topic

Posted

Re: [Free] [v1] Profile Image Uploader

Quite a few bugs mate..

PHP can send headers, so I can easily fool this script and upload a shell.

And, I can make an image with php code in it, and then use some games to execute the image.

And the image's name, goes directly into the database. (:

*Ferdi has some exploiting to do, but then again iso is getting the hang of hacking. ;)*

Posted

Re: [Free] [v1] Profile Image Uploader

 

Quite a few bugs mate..

PHP can send headers, so I can easily fool this script and upload a shell.

And, I can make an image with php code in it, and then use some games to execute the image.

And the image's name, goes directly into the database. (:

*Ferdi has some exploiting to do, but then again iso is getting the hang of hacking. ;)*

Meh i had no idea how to secure a script when i made this... I'll update it soon.. Next hour or two :P

Posted

Re: [Free] [v1] Profile Image Uploader

Ok i think its secure now....

Not sure about the script in an image file tho...

 

Used this..

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

What imma stick in my global func 8-)

Posted

Re: [Free] [v1] Profile Image Uploader

I told you on MSN when you asked me, it won't stop it.

Actually, my direct words were "hehe". :roll:

Try this:

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

Posted

Re: [Free] [v1] Profile Image Uploader

 

I told you on MSN when you asked me, it won't stop it.

Actually, my direct words were "hehe". :roll:

Try this:

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

Oh right, I never knew "hehe" meant no...

Posted

Re: [Free] [v1] Profile Image Uploader

 

I told you on MSN when you asked me, it won't stop it.

Actually, my direct words were "hehe". :roll:

Try this:

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

Oh right, I never knew "hehe" meant no...

That okay..

Well, now you know. (:

Posted

Re: [Free] [v1] Profile Image Uploader

 

just so u know

now u cant even upload a pic

Its not done yet...

The script that ferdi posted didnt work =/

I'm in a coding kinda mood. I'll try to fix.

Posted

Re: [Free] [v1] Profile Image Uploader

 

just so u know

now u cant even upload a pic

Its not done yet...

The script that ferdi posted didnt work =/

I'm in a coding kinda mood. I'll try to fix.

It is fixed...

It should work for all versions if you convert properly. I just tested this exact script on my site worked fine...

  • 2 weeks later...
Posted

Re: [Free] [v1] Profile Image Uploader

 

V2

uploadpic.php

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

The rest should be the same.

what am i doing rong i keep getting

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

and i get this in cpanel error log

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

Posted

Re: [Free] [v1] Profile Image Uploader

Hey Iso

In your newly updated first topic

change:

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

to

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

thanks for the mod

Posted

Re: [Free] [v1] Profile Image Uploader

V2 version , not hard to convert.. but im sure someone will eventually ask

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

Posted

Re: [Free] [v1] Profile Image Uploader

 

Hey Iso

In your newly updated first topic

change:

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

to

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

thanks for the mod

Thanks fbiss, didn't realise i was missing a } :lol:

Posted

Re: [Free] [v1] Profile Image Uploader

 

Hey Iso

In your newly updated first topic

change:

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

to

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

thanks for the mod

I converted about 3 posts above.

 

V2

uploadpic.php

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

The rest should be the same.

what am i doing rong i keep getting

 

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

and i get this in cpanel error log

You're unable to view this code.

Viewing code withinĀ this forum requires registration, you canĀ register here for free.

 

Try contacting your hosting site. They will know more then me. All I know is that is working on my site 100%.

Posted

Re: [Free] [v1] Profile Image Uploader

I am amazed by your intense stupidity.

Read the error provided, and then maybe you should see what is wrong.

Results 1 - 100 of about 177,000 English pages for Premature end of script headers:. (0.19 seconds)
Posted

Re: [Free] [v1] Profile Image Uploader

Hey Isomerizer ,

I maybe wrong, but I think there is another issue Image Uploader as a whole.

It looks like if user Fred uploads a image called MyImage.jpg

And say the next day Joe comes along a MyImage.jpg file (different image, same name)

It will overwrite Fred's picture.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...