Đang Thực Hiện

138394 Logged In Security Issue Fix

Hello!

We have an issue with our script. Members once logged in are able to view other members details thru this loophole.

Visit [url removed, login to view] and click log-in in the menu bar at the top. Log into an temp account called carter at [url removed, login to view] (password: carter). Once logged in click on 'click here for the latest news' banner which is on the left side and it will take you to a similiar page.

You will notice how the page was written it has the user ID in the URL. The issue is, if you change the user ID from carter to iverson (another temp account) it takes you to another users account. Obviously this cannot happen and needs to be fixed.

Pages that (we are aware) it affects are:

[url removed, login to view]

[url removed, login to view]

[url removed, login to view]

[url removed, login to view]

[url removed, login to view]

All code provided needs to be documented should our guys need to make adjustments.

When placing a bid please provide me with your plan on how to fix this issue. The successful bidder will be able to receive payment via PayPal (otherwise please let me know before you bid how you want to be paid).

Any questions please post them on the PMB.

Thank you.

Kỹ năng: Bất kì công việc gì, PHP

Xem thêm: we will fix it, news bar script, issue payment, how to fix com, receive payment via paypal, log me in, log into paypal, log in.com, change security questions, log in to your account, we security, security questions, security log, issue, fix an issue, code security, url fix, change security, paypal issue, fix bar, php menu security, side bar banner, banner script paypal, fix menu bar, php let users change password

Về Bên Thuê:
( 62 nhận xét ) Mount Waverley, Australia

Mã Dự Án: #1884568

Đã trao cho:

web98

pls refer to pmb

$20 USD trong 1 ngày
(0 Đánh Giá)
0.0