Previous Thread
Next Thread
Print Thread
Rating: 5
Joined: Jul 2001
Posts: 808
Coder
Coder
Joined: Jul 2001
Posts: 808
in your instructions you wrote:

1. Open Validate.php and set the path to the logfile (Line 57). This file must be writeable by the webserver. You can adjust the settings at the top (defined in constants). Standard settings should be fine in most cases.

should this be a path to directory only or a path with filename ?

/edit: it must include a filename

You wrote something about the Googlebot and fix it in 1.1.1
In my log I see the Yahho Slurp like this:

ERROR: SECURITY ALERT: POSSIBLE XSS ATTACK DETECTED!
ERROR: Script "/ubbthreads/showthreaded.php" has been called with an invalid parameter.
ERROR: parameter named "page" with a value of "vc" contained invalid characters. Valid type is: num.
ERROR: Script has been called from: 68.142.250.13
ERROR: User agent was: Mozilla/5.0 (compatible; Yahoo! Slurp; http://help.yahoo.com/help/us/ysearch/slurp)
ERROR: Referer was:
ERROR: Full URI was: /ubbthreads/showthreaded.php?Number=108450&page=vc
ERROR: END OF SECURITY ALERT.

I m not sure how to handle your script and like to ask for your assist.

While do some tests I get:

INFO: UNKNOWN PARAMETER FOUND: sub. Value was: browser_misc
INFO: Script "/ubbthreads/feeds/rss.php" has been called with an unknown parameter./ubbthreads/feeds/rss.php?func=board&sub=browser_misc
INFO: Full URI was: /ubbthreads/feeds/rss.php?func=board&sub=browser_misc
INFO: Script has been called from: 80.136.191.134
INFO: Referer was:
INFO: User agent was: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; de) Opera 8.0

Last edited by Zarzal; 06/27/2005 3:42 AM.
Sponsored Links
Entire Thread
Subject Posted By Posted
Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Astaran 04/20/2005 7:33 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) scroungr 04/20/2005 7:35 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Medar 04/20/2005 8:22 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) AllenAyres 04/21/2005 6:00 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Dalantech 04/21/2005 7:57 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) AllenAyres 04/27/2005 12:15 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) ksanuk 04/30/2005 3:46 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Calpy 04/30/2005 3:51 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) AKD96 04/30/2005 7:56 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/02/2005 12:46 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/02/2005 12:47 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) caymuc 05/02/2005 10:25 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) AllenAyres 05/03/2005 3:03 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) AKD96 05/03/2005 3:31 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) ksanuk 05/03/2005 4:07 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/03/2005 6:13 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/06/2005 12:13 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/06/2005 12:57 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) SchoolScandals 05/07/2005 12:55 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) SchoolScandals 05/07/2005 1:54 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) caymuc 05/07/2005 11:50 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) SchoolScandals 05/07/2005 6:11 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/07/2005 7:23 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) caymuc 05/07/2005 11:04 PM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/10/2005 10:51 AM
Re: Finished-[6.3-6.5] Input validation mod (Security fix) Astaran 05/12/2005 12:20 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 krejt 06/07/2005 3:54 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Astaran 06/07/2005 4:53 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 donJulio 06/08/2005 2:49 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 krejt 06/08/2005 7:43 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Zarzal 06/27/2005 8:56 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 dont 06/27/2005 5:11 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Astaran 06/29/2005 12:59 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Astaran 06/29/2005 1:00 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Zarzal 07/10/2005 7:41 PM
Re: Finished-[6.3-6.4-6.5] Input validation mod (Security fix) 1.1.1 Astaran 07/17/2005 10:14 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (S peterhd 01/17/2006 8:43 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (S Zarzal 04/26/2006 1:19 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (S Zarzal 04/26/2006 1:21 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (S AllenAyres 04/26/2006 4:28 AM
Re: Finished-[6.3-6.4-6.5] Input validation mod (S Zarzal 04/26/2006 9:30 AM

Link Copied to Clipboard
Donate Today!
Donate via PayPal

Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.

Please also see our parent organization VNC Web Services if you're in the need of a new UBB.threads Install or Upgrade, Site/Server Migrations, or Security and Coding Services.
Recommended Hosts
We have personally worked with and recommend the following Web Hosts:
Stable Host
bluehost
InterServer
Visit us on Facebook
Member Spotlight
isaac
isaac
California
Posts: 1,157
Joined: July 2001
Forum Statistics
Forums63
Topics37,573
Posts293,925
Members13,849
Most Online5,166
Sep 15th, 2019
Today's Statistics
Currently Online
Topics Created
Posts Made
Users Online
Birthdays
Top Posters
AllenAyres 21,079
JoshPet 10,369
LK 7,394
Lord Dexter 6,708
Gizmo 5,833
Greg Hard 4,625
Top Posters(30 Days)
Top Likes Received
isaac 82
Gizmo 20
Brett 7
WebGuy 2
Morgan 2
Top Likes Received (30 Days)
None yet
The UBB.Developers Network (UBB.Dev/Threads.Dev) is ©2000-2024 VNC Web Services

 
Powered by UBB.threads™ PHP Forum Software 8.0.0
(Preview build 20221218)