Filter Add

Results 1 to 15 of 15
  1. #1
    Member MattSantos is offline
    MemberRank
    May 2016 Join Date
    94Posts

    happy Filter Add

    Make a good avail.
    Hey guys how are you?
    Today I brought you an add filter Plus Emulator .
    I had a time ago to a hotel, but decided to post .


    The design is simple if you want to edit , do his will.


    Print:



    First of all:
    After you upload your Habbo Pirata, go to FILTER folder and filter.php file and set with the data from your PHP. I did with support 4 words .

    Download:
    Mediafire AND
    Scan

    Sorry my bad english,i'm Brazilian. xD


    Last edited by MattSantos; 12-07-16 at 03:09 AM. Reason: UPDATE PHP


  2. #2
    apt-get install xcowsay 3M1L is offline
    MemberRank
    Jul 2012 Join Date
    SwedenLocation
    268Posts

    Re: Filter Add

    Dear people, don't use this script unless you wanna get hacked.



    Nice SQLi.

  3. #3
    Proficient Member Seat is offline
    MemberRank
    Dec 2010 Join Date
    153Posts

    Re: Filter Add

    Quote Originally Posted by 3M1L View Post
    Dear people, don't use this script unless you wanna get hacked.



    Nice SQLi.

    Why u don't propose a solution ? instead of saying that

  4. #4
    Member MattSantos is offline
    MemberRank
    May 2016 Join Date
    94Posts

    Re: Filter Add

    Quote Originally Posted by 3M1L View Post
    Dear people, don't use this script unless you wanna get hacked.



    Nice SQLi.
    It is a simple script that just Staffs users should know . .- .

  5. #5
    j’aime ma famille dominic is offline
    MemberRank
    Aug 2012 Join Date
    ~/Location
    611Posts

    Re: Filter Add

    It isn't that hard to add mysqli_real_escape_string to your posts.

  6. #6
    Typescript XOXO LeChris is offline
    MemberRank
    Sep 2011 Join Date
    749Posts

    Re: Filter Add

    Why is everyone being an ass, tell the guy and help him out. I'm sure he didn't intend to provide possible break in points, but wanted to help out a bit.
    [PHP] filter.php - Pastebin.com

  7. #7
    dont judge me Wuzix is offline
    MemberRank
    Sep 2013 Join Date
    C:\inetpub\wwwLocation
    403Posts

    Re: Filter Add

    Quote Originally Posted by LeChris View Post
    Why is everyone being an ass, tell the guy and help him out. I'm sure he didn't intend to provide possible break in points, but wanted to help out a bit.
    [PHP] filter.php - Pastebin.com
    I'm a good ass, just if you want to know.

  8. #8
    Member MattSantos is offline
    MemberRank
    May 2016 Join Date
    94Posts

    Re: Filter Add

    Thank you boys. Updated the download

  9. #9
    "(still lacks brains)" NoBrain is offline
    MemberRank
    Sep 2011 Join Date
    United KingdomLocation
    2,658Posts

    Re: Filter Add

    Quote Originally Posted by MattSantos View Post
    It is a simple script that just Staffs users should know . .- .
    Doesn't matter, there's always that one guy.

  10. #10
    Member MattSantos is offline
    MemberRank
    May 2016 Join Date
    94Posts

    Re: Filter Add

    Quote Originally Posted by pea-brain View Post
    Doesn't matter, there's always that one guy.
    I did not touch me this :/

  11. #11
    Apprentice Geo is offline
    MemberRank
    May 2016 Join Date
    United KingdomLocation
    16Posts

    Re: Filter Add

    Quote Originally Posted by MattSantos View Post
    It is a simple script that just Staffs users should know . .- .
    Even staff members should not be able to exploit your system, never trust user data; even if it is your own.

  12. #12
    Account Upgraded | Title Enabled! streamhotel is offline
    MemberRank
    Apr 2012 Join Date
    EarthLocation
    511Posts

    Re: Filter Add

    This isn't a good practise. Instead of this you could use prepared statements or filtering with mysqli_real_escape_string. Like Geo said you may never trust on user data. Maybe the next situation explains: Staff members may don't have the intention to hack your hotel but what if their account get hacked and the hacker use the exploit to inject things into your database?

  13. #13
    Check http://arcturus.pw The General is offline
    DeveloperRank
    Aug 2011 Join Date
    7,610Posts

    Re: Filter Add

    No session checking. Imagine if somebody finds the url and inserts every letter, hmm funny.

  14. #14
    Member MattSantos is offline
    MemberRank
    May 2016 Join Date
    94Posts

    Re: Filter Add

    Quote Originally Posted by The General View Post
    No session checking. Imagine if somebody finds the url and inserts every letter, hmm funny.

    If you want to put. The code of my CMS is different for this removed .

  15. #15
    Alpha Member Emily is offline
    MemberRank
    Oct 2012 Join Date
    The NetherlandsLocation
    2,408Posts

    Re: Filter Add

    Quote Originally Posted by MattSantos View Post
    If you want to put. The code of my CMS is different for this removed .
    Why didn't you just edit it for RevCMS? Since most people use Rev



Advertisement