mutantmonkey.info

Archive for June, 2006

IceBB Security Hole

Sunday, June 18th, 2006

A little while ago, David informed me that someone was trying to inject SQL using IceBB’s search function and it was triggering MySQL errors. Luckily, I had code in mysql.db.php that would e-mail the board administrator after 10 MySQL errors to let them know that something might be wrong. I took a look at the [...]