Quote:
Originally Posted by Flayedskin
LFG this post should be deleted and Vortfu banned because its a direct violation of your site rules. Nothing good will come of this subject post.
|
Other than shit and giggles (which is always good)?
Firstly, the OP does not violate the site rules ... my post with the meth recipe and how to build an atomic bomb ... maybe =p
But so far you've been informed about a vulnerability in a piece of software which you use blindly out of the box ... and you've even got a patch for the bug right here in the thread (even though it would be better to just sanitize the $user variable in the SQL query to future proof any other code that calls session->create).
That's good right? (not as good as ninja pics ... but still better than nothing)
The other alternative would be for people to NOT know that there's a vulnerability in their systems and thus have nfi on how to fix it. Ignorance isn't always bliss... unless that chick from last weekend really was a man, then you just dont want to know.
Quote:
|
I'd like to thank Vortfu for pointing out a security flaw, thus allowing everybody to fix their eqdkp or move on to a still maintained product (at least I'm not sure whether eqdkp is still being developed).
|
By the looks of things no, EQDKP is not being actively developed. There's an occasional update here and there but it's far from being actively developed / supported... thus getting the original grats on being retarded in the OP.
Everyone else seems to fall into the other two gratsed categories.
vortfu