Thisislegal.com

:[ Login ]:

welcome, please log-in:




 Remember Me  ?
About: Remember Me
Ticking this box will make the site remember you for 24 hours. However, each time you visit the site this time is renewed, so if you are a regular visitor you will stay logged in.


Register An Account
Forgot Password?

:[ Forums ]:
Latest post in: Challenge Help
topic:
Encryption 2???
by: Null Set
:[ Welcome ]:

Bug Report



If you have found a problem in any of the sites script, please submit it below.


Bug Discovered:

    

Thanks for participating.



Known Bugs:

*XSS in profile page - wow, we are idiots. We filtered HTML but you still managed to get past it with a CSS exploit, clever you :P How that was missed I dont know. Shame you didn't leave your name, we wouldve credited you.

*Challenge errors - this was a stupid mistake and has been fixed. Although one of the things you reported doesn't matter, and may in fact become an extra challenge. Sadly you didnt leave your nickname to gain credit for finding these. maybe if you post again with your name credit may be given.



*Random on wiki not working - this is due to the low article count on the wiki at the moment, if you try say 10 times it will change in a few of them. We need more contributors (admins will be contributing more soon also)



*Script being revealed in R4 - more than 1 person noticed this, but fixed now, thanks for reporting.



*Broken home link on chat page - Changed, thanks for reporting.

*Broken tutorial link - Updated to include a different link containing more useful tutorials.

*Lots of Challenges not working - Due to the recent server change. Hopefully they should all work fine now. Thanks for reporting.

*Register Page not working - Due to image validation problems. The image should now refresh, but check that it does before re-filling in the form. 

*Shoutbox set to guest - Again due to recent server change. Should be repaired now, please report if it doesn't work for you. 

*Slashes added to comments and HTML prevention - The slashes are called "magic quotes" these have to stay on to prevent SQL errors, as for the HTML prevention this should now be improved to allow you to enter it on all but one page. Contact us again if you end up getting redirected when you use HTML symbols.

*Challenge 6 not working - Simple error in my coding, now fixed. Thanks for reporting.

*Various challenges not working - Thanks for reporting these, this was a simple error and was quickly fixed. Although the pwd in challenge 7 seems to be visible to me and I've made bonus 9 harder to complete (sorry). If you still get the problem with challenge 7, post another report. Thanks.

*Dead link to c99 shell in RFI tutorial and challenge hint not invisible - Uploaded my own fake shell to the site and updated tutorial. The hidden hint on the challenge page still appears to be hidden to me though

*The submit form and contact.php being vulnerable to HTML - These reports are stored in a file that is not HTML based so any HTML will just be displayed, nice thinking though :)

*XSS problem - Even though it appears to be vulnerable to xss it actually isn't. before users are added to the db it checks for unwanted code. thanks for reporting though

*User contributed challenge error - This was in challenges.php when in fact you hadn't completed it, try it again you will get a big blue message saying you have when you complete it.

*Login not lasting long enough - Server updated, sessions must last more than satisfying now

*SQL Error - Thanks for reporting, This means your session has expired. Repaired, now it just wont display a username. If you get this just go back to login.php and log in again

*Pages go to left (Shrink) - Thanks for reporting, fixed

*Challenge 6 wouldnt register - Fixed

*Login box sometimes doesn't work in IE - Added alternate login

*Challenge 2 isn't fully functional - Updated

*Some dead menu links on pages - Fixed




Who's online: Naprecks,

Click here to Vote!    Firefox 3  Opera Web Browser  Valid XHTML 1.0 Transitional

Home | Challenges | Forums | Contact | About (Disclaimer)
Copyright © 2007-10 Thisislegal.com, All Rights Reserved

 
:[ ShoutBox ]:
Guest - Login to use your nickname


Guest:
t0mmy9
mariokazzi:
I need someone to help me with hacking my Gf's facebook account! And how to crack WAP wifi protection using aircrack-ng on ubuntu 10 smile.gif
Guest:
does anyone know any other good websites to download myspace MUSIC with out fileh2d
t0mmy9:
ive been meaning to write something to do it, I just havent found the time yet.
Guest:
does anyone know any other good websites to download myspace MUSIC with out fileh2d
Rinderfelder:
what
Guest:
kai
Pages: 1, 2...158
Goto: