avalanch07
Member
I have found a possibly exploitable error.
When browsing to the last post (from the forum index or any other way) you can append anything to the end and it will think it is valid.
Instead of thinking this url below is wrong, it treats it as if it's valid and does not send an error message.
Notice how it thinks this url is valid.
[vB 4.2.x] Possibly exploitable bug with post hashtag handling....
When browsing to the last post (from the forum index or any other way) you can append anything to the end and it will think it is valid.
Code:
http://www.video-game-chat.com/forum/vgchat-general-chat/195660-16-ridiculous-knock-off-game-consoles-post216821.html#post216821
Instead of thinking this url below is wrong, it treats it as if it's valid and does not send an error message.
Code:
http://www.video-game-chat.com/forum/vgchat-general-chat/195660-16-ridiculous-knock-off-game-consoles-post216821.html#post216821ThisisAnErrorWithinDbseo
Notice how it thinks this url is valid.
[vB 4.2.x] Possibly exploitable bug with post hashtag handling....
Last edited: