Loading...

Menu [toggle]

Modifications Wanted

A page of wanted Modications
Print

Security


Does anyone know of any addons that can be used to create a more secure website?

Currently I am looking for something to secure the logins.

I am add a bunch of mysql_real_escape clasuses to the source code.

Login Information


Currently all of the passwords in Version 4 are stored as a md5(password) in the singup relation so that is good. However, all of the passwords are sent to the server as a post with the password as plain text. What I want is for the client to authenticate by doing a md5(server_challenge_string + md5(password)). This would be an acceptable method.

However, we would need to use ssl to send the password to the server when the user signs up.

SQL injections


you need to add mysql_real_escape_all() to every single page that uses the database. This is very time consuming and should already be done by clip share. Too bad that don't advertise that this software contains many flaws on a security basis.


Created by: dave43 points . Last Modification: Monday 07 of July, 2008 13:54:08 CDT by dave43 points .


Top users

  1. 1) 
    1391
     limpcookie1391 points 
  2. 2) 
    945
     folcklord945 points 
  3. 3) 
    614
     kinquo614 points 
  4. 4) 
    574
     kuleshs574 points 
  5. 5) 
    105
     autodia105 points 
More...

Last Visitors

  1. You
    Tue 07 of Feb., 2012 13:29 CST
  2. WarreDavid
    Sat 04 of Feb., 2012 20:19 CST
  3. WymanHolzinger0o26 points 
    Tue 31 of Jan., 2012 14:03 CST
  4. PoolMikeska0d826 points 
    Tue 31 of Jan., 2012 12:18 CST
  5. TerryColomauht26 points 
    Tue 31 of Jan., 2012 10:14 CST
  6. MarshallHooglandp926 points 
    Tue 31 of Jan., 2012 08:14 CST
For your webhosting needs visit Web-Hosting-Coupon-Deals.com
This site is not affiliated with or supported directly by ScriptXperts and is a community effort to document the Clip-Share Script.
We can not be held liable for anything you do by using the content on this website.