Site Links
Home
Features
Documentation
Pricing & Order
Members Area
Support Options
Who's Online
2 Registered (blaaskaak, driv), 29 Guests and 25 Spiders online.
Key: Admin, Global Mod, Mod
Top Posters
Gizmo 11678
Rick 7551
Ian 4099
Mark S 3969
ntdoc 3102
Sirdude 2041
jgeoff 1876
David Dreezer 1750
driv 1557
AllenAyres 1523
Latest Photos
Carrie - So Very
Testing
Test Photo
4TH of July at the river!
Test shots from D300 part 3
Topic Options
Rate This Topic
#113891 - 01/30/05 07:38 PM [NOTABUG] Got past the untaint check!
oracleweb Offline
member

Registered: 04/07/04
Posts: 141
w00t!

http://www.ubbcentral.com/cgi-bin/ultimatebb.cgi?ubb=recent_user_posts

I was viewing a member's recent posts on my forum

( http://www.ianspence.com/cgi-bin/ultimatebb.cgi?ubb=recent_user_posts;u=00000071 )

I then went to check mine. Knowing I'm #1 , I deleted the 7 and forgot it had to be 8 numbers long. Anyhoo, I got past the check. I then checked here to make sure it wasn't one of my modifications.

Top
#113892 - 01/30/05 07:40 PM Re: [NOTABUG] Got past the untaint check!
Ron M Offline


Registered: 06/04/06
Posts: 358
Loc: Des Moines, IA
How did you get past the untaint check? at CGIPath/ubb_profile.cgi line 1142.

This can be confirmed on an unmodified 6.7.2 board (mine)
_________________________
Threads Alpha Tester
My Homepage

Top
#113893 - 01/30/05 09:50 PM Re: [NOTABUG] Got past the untaint check!
Gizmo Offline


Registered: 06/04/06
Posts: 11678
Loc: Portland, OR; USA
Confirmed on my 6.7.2 modified forum; it's kinda fun to add more/less "0's" to the address bar for the user number; it gets past in either direction.
_________________________
UGN Security, Elite Web Gamers & VNC Web Design Owner
Longtime UBB Supporter, UBB7 Beta Tester & Resident Post-A-Holic

Top
#113894 - 01/31/05 10:32 AM Re: [NOTABUG] Got past the untaint check!
David Dreezer Offline
Pooh-Bah

Registered: 07/21/06
Posts: 1750
This is the designed behavior - you didn't actually pass in a valid eight digit user number. The code intentionally does not forcefully mangle the number.
_________________________
I swear, if we wipe on trash one more time ...

Top
#113895 - 01/31/05 08:15 PM Re: [NOTABUG] Got past the untaint check!
Gizmo Offline


Registered: 06/04/06
Posts: 11678
Loc: Portland, OR; USA
Wouldn't it instead make more sense to state "you have not entered a valid 8 digit member id" vs "you have bypassed the taint check"?
_________________________
UGN Security, Elite Web Gamers & VNC Web Design Owner
Longtime UBB Supporter, UBB7 Beta Tester & Resident Post-A-Holic

Top
#113896 - 02/01/05 07:13 AM Re: [NOTABUG] Got past the untaint check!
David Dreezer Offline
Pooh-Bah

Registered: 07/21/06
Posts: 1750
There are no conditions in which an invalid link can be generated to that page. The error isn't meant to be user-friendly, as it's one of those "this can't happen" errors.
_________________________
I swear, if we wipe on trash one more time ...

Top
#113897 - 02/01/05 09:08 AM Re: [NOTABUG] Got past the untaint check!
Gizmo Offline


Registered: 06/04/06
Posts: 11678
Loc: Portland, OR; USA
Yeh, but there are many ways that a user can mess a direct link to that page up in a sig/post then whine that the board has a bug lol
_________________________
UGN Security, Elite Web Gamers & VNC Web Design Owner
Longtime UBB Supporter, UBB7 Beta Tester & Resident Post-A-Holic

Top


Shout Box

Recent Topics
Community Spotlight
by Thelockman
Yesterday at 08:04 AM
Protecting Board from hackers
by duquesne
Yesterday at 04:48 AM
Change New Topic text
by MLD
08/25/08 04:59 PM
Reason for deleting a thread
by MattUK
08/24/08 09:40 PM
Adding rss feed to a custom portal island
by alex26101
08/23/08 09:29 PM
Forum Stats
4016 Members
33 Forums
30842 Topics
156619 Posts

Max Online: 978 @ 06/24/07 08:19 PM