A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
Ok, now I'm gonna strain myself on thinking how this would be possible.
A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
Haha, SQL injection, jesus, I thought that was a lost art.
A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
Ok, now I'm gonna strain myself on thinking how this would be possible.
Simple. SQL Injection. phpBB didnt handle their input correctly and made it so a user could write values into a mySQL query. A user could then call for the password hash of a user or a group of users. With little\no effort that list could be referenced to a UID and bam, you can forge a cookie and login as the user without their knowledge. Or if you really were mean you could run that MD5 hash through a program like john the ripper and bruteforce it (or a group of passwords) All the simple passwords would break quickly, the better ones would take longer.
A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
Ok, now I'm gonna strain myself on thinking how this would be possible.
Simple. SQL Injection. phpBB didnt handle their input correctly and made it so a user could write values into a mySQL query. A user could then call for the password hash of a user or a group of users. With little\no effort that list could be referenced to a UID and bam, you can forge a cookie and login as the user without their knowledge. Or if you really were mean you could run that MD5 hash through a program like john the ripper and bruteforce it (or a group of passwords) All the simple passwords would break quickly, the better ones would take longer.
A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
Ok, now I'm gonna strain myself on thinking how this would be possible.
Simple. SQL Injection. phpBB didnt handle their input correctly and made it so a user could write values into a mySQL query. A user could then call for the password hash of a user or a group of users. With little\no effort that list could be referenced to a UID and bam, you can forge a cookie and login as the user without their knowledge. Or if you really were mean you could run that MD5 hash through a program like john the ripper and bruteforce it (or a group of passwords) All the simple passwords would break quickly, the better ones would take longer.
A very clever user could submit weird data and have access to run SQL commands. This could dump all of our password hashes into a file and (after a long ass time) eventually crack them.
Ok, now I'm gonna strain myself on thinking how this would be possible.
Simple. SQL Injection. phpBB didnt handle their input correctly and made it so a user could write values into a mySQL query. A user could then call for the password hash of a user or a group of users. With little\no effort that list could be referenced to a UID and bam, you can forge a cookie and login as the user without their knowledge. Or if you really were mean you could run that MD5 hash through a program like john the ripper and bruteforce it (or a group of passwords) All the simple passwords would break quickly, the better ones would take longer.
Strain complete.
weerd coed go in usernaem feeld, out go passwards
Holy shit. De ja vu.
And yeah, I assumed it was done this way, but I also assumed the phpBB guys would have made 100% certain this wasn't possible.
Munkus BeaverYou don't have to attend every argument you are invited to.Philosophy: Stoicism. Politics: Democratic SocialistRegistered User, ClubPAregular
If it wasn't caused by these code changes, it's mighty co-incidental
Orthanc on
0
Munkus BeaverYou don't have to attend every argument you are invited to.Philosophy: Stoicism. Politics: Democratic SocialistRegistered User, ClubPAregular
edited March 2004
Let me rephrase that then.
May or may not be purposeful.
EDIT: Also, my sig was fine until I tried to update it not a few minutes ago. I got rid of the tinyurl until this gets fixed though, because itjust looks silly.
Munkus Beaver on
Humor can be dissected as a frog can, but dies in the process.
0
OrthancDeath Lite, Only 1 CalorieOff the end of the internet, just turn left.Registered User, ClubPAregular
edited March 2004
My understanding is that phpBB stores the HTML translation rather than the bbCode in the database, so it makes sence that it would only break on update
Posts
Also, I cheated on you with deni.
I'm sorry.
:shock:
You cheating bastard!
I got randomly redirected to your heart.
(no tilde)
(many tildes)
*Edit*
To be fair, whilst having sex with my gf, I was thinking about Alpha and Deni (having sex).
What was it they needed to patch?
Ok, now I'm gonna strain myself on thinking how this would be possible.
Haha, SQL injection, jesus, I thought that was a lost art.
Strain complete.
weerd coed go in usernaem feeld, out go passwards
Holy shit. De ja vu.
And yeah, I assumed it was done this way, but I also assumed the phpBB guys would have made 100% certain this wasn't possible.
.hack
I think it's forcing images to end in image tags.
observe
second works, first doesn't
May or may not be caused by the code changes
It must have been caused by A code change.
If it wasn't caused by these code changes, it's mighty co-incidental
May or may not be purposeful.
EDIT: Also, my sig was fine until I tried to update it not a few minutes ago. I got rid of the tinyurl until this gets fixed though, because itjust looks silly.
Grease fucking lightning.