REGISTER or LOGIN to have the annoying ads removed.
Thread Rating:
  • 1 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Reputation Given Page
#1
Hey guys, this is my first release

Mod Name: Rep Given Page
Mod Author: Boxxy
Mod Website: http://gamingsenses.com
Mod Version: 1.1.2
Mod Mybb Compatibility: 1.4.X
Mod File Edits: None
Mod File Uploads: 1
Mod Description: View reputations a user has given out

Installation

1. Upload File

/repgiven.php

2. Edit the profile template

Member Templates -> member_profile_reputation

Before the

Code:
{$vote_link}

Put

Code:
[<a href="repgiven.php?uid={$memprofile['uid']}">Given</a>]

DEMO:
http://gamingsenses.com

Enjoy :]

Fixed the mysql vuln labrocca pointed out.


Attached Files Thumbnail(s)
   

.zip   RepsGiven_-_By_-_Boxxy.zip (Size: 456.81 KB / Downloads: 243)
#2
Thank you for this, appreciated.
#3
Your script is easily exploitable with mysql injection. I suggest you remove it from your site.
#4
(Jun 25, 2010, 04:30 PM)labrocca Wrote: Your script is easily exploitable with mysql injection. I suggest you remove it from your site.

Thanks for the heads up, ill fix it :]

Edit: Updated, i think i fixed it, mind checking for me though?
#5
I guess that's better but not the best method.
#6
(Jun 25, 2010, 08:42 PM)labrocca Wrote: I guess that's better but not the best method.

I know, i could have done mysql_real_escape_string(stripslashes())

But then id have to connect to the db outside of mybb, and if you suggest a better method i'll gladly update :]
#7
http://us2.php.net/manual/en/function.intval.php

That's the function you'd be best using.
#8
Alright, I'll use that in the 1.1.3 update :] Thanks labrocca.
#9
God damn it so this is exploitable? I was about to put this on my forum Tongue
[Image: userbar.png]
#10
(Jun 26, 2010, 06:01 AM)AXVIS Wrote: God damn it so this is exploitable? I was about to put this on my forum Tongue

No, it isn't exploitable anymore, i fixed what he pointed out Tongue


Possibly Related Threads...
Thread Author Replies Views Last Post
  Bans.php Page Elite Dash 7 4,509 Aug 07, 2010, 07:18 AM
Last Post: IceGuru
  [Release] Donation Page 1.1 Zash 23 11,795 Jul 25, 2010, 12:23 PM
Last Post: Zash
  AnonRep (Anonymous Reputation) labrocca 18 12,094 Jun 26, 2010, 05:07 PM
Last Post: Ally Mac
  Disable Ads on Login and registration Page HubSeo 7 4,428 May 09, 2010, 01:20 AM
Last Post: labrocca
  Making a FAKE Admin CP Login Page Zash 10 5,698 Sep 10, 2009, 05:55 PM
Last Post: technoman

Forum Jump:


Users browsing this thread: 1 Guest(s)