BoutCheetah

BoutCheetah Community => General Discussion => Topic started by: paulbeer12 on September 17, 2011, 08:14:58 PM

Title: Dear Santa & Allie
Post by: paulbeer12 on September 17, 2011, 08:14:58 PM
 :D
Hello Santa & Allie!
i'm going to tell you that you have a BIG WHOLE IN YOUR SERVER!
i tested sqlinj on boutcheetah game
then i typed in
UsernameField:"y+or+1=3#"
PasswordField:"anythink"

i g0t blank messsage ""

but if u type in userfield; "test"
and pw field:"anythink"
then you get error "Incorrect Password"

Hmm..
Strange So why i don't get error when i type "y+or+1=3#"
??
How you think Santa and Allie
i Give you 5 days to save server!
~ Regardz ->MegaArkade <-
;D ;D ;D ;D ;) :)
lol
Title: Re: Dear Santa & Allie
Post by: Hct13345 on September 17, 2011, 08:15:38 PM
LOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOL
Title: Re: Dear Santa & Allie
Post by: Sainomi on September 17, 2011, 08:23:35 PM
Quote from: Hct13345 on September 17, 2011, 08:15:38 PM
LOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOL
Title: Re: Dear Santa & Allie
Post by: zepher2211 on September 17, 2011, 08:29:56 PM
In English please, I'm assuming this is some type of threat to hack accounts, I'm not sure since you use numbers for letters and mispell almost everything
Title: Re: Dear Santa & Allie
Post by: Toast on September 17, 2011, 08:34:18 PM
Quote from: Sainomi on September 17, 2011, 08:23:35 PM
Quote from: Hct13345 on September 17, 2011, 08:15:38 PM
LOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOL
Title: Re: Dear Santa & Allie
Post by: oprototype on September 17, 2011, 08:43:36 PM
Quote from: paulbeer12 on September 17, 2011, 08:14:58 PM
:D
Hello Santa & Allie!
i'm going to tell you that you have a BIG WHOLE IN YOUR SERVER!
i tested sqlinj on boutcheetah game
then i typed in
UsernameField:"y+or+1=3#"
PasswordField:"anythink"

i g0t blank messsage ""

but if u type in userfield; "test"
and pw field:"anythink"
then you get error "Incorrect Password"

Hmm..
Strange So why i don't get error when i type "y+or+1=3#"
??
How you think Santa and Allie
i Give you 5 days to save server!
~ Regardz ->MegaArkade <-
;D ;D ;D ;D ;) :)
lol

oh snap. He knows what he's talking about.
Title: Re: Dear Santa & Allie
Post by: mhj on September 17, 2011, 08:48:51 PM
This made me lol. your English is almost as bad as mine and you use too many smileys.
Title: Re: Dear Santa & Allie
Post by: zepher2211 on September 17, 2011, 09:09:59 PM
Quote from: mhj on September 17, 2011, 08:48:51 PM
This made me lol. your English is almost as bad as mine and you use too many smileys.

Smilies are often used to piss people off
Title: Re: Dear Santa & Allie
Post by: RAUDOG on September 18, 2011, 02:01:49 AM
Quote from: paulbeer12 on September 17, 2011, 08:14:58 PM
:D
Hello Santa & Allie!
i'm going to tell you that you have a BIG WHOLE IN YOUR SERVER!
i tested sqlinj on boutcheetah game
then i typed in
UsernameField:"y+or+1=3#"
PasswordField:"anythink"

i g0t blank messsage ""

but if u type in userfield; "test"
and pw field:"anythink"
then you get error "Incorrect Password"

Hmm..
Strange So why i don't get error when i type "y+or+1=3#"
??
How you think Santa and Allie
i Give you 5 days to save server!
~ Regardz ->MegaArkade <-
;D ;D ;D ;D ;) :)
lol
Hey MegaArkarde is back, wats up man.
THE_MACK
Title: Re: Dear Santa & Allie
Post by: Santa on September 18, 2011, 02:02:13 AM
You got a blank message because we have a function to check for invalid characters, I thought this was obvious tho lol.
Title: Re: Dear Santa & Allie
Post by: umadawesome on September 18, 2011, 02:21:01 AM
I'll buy one of your hacks for 20k.
Title: Re: Dear Santa & Allie
Post by: Click on September 18, 2011, 03:40:17 AM
Quote from: Toast on September 17, 2011, 08:34:18 PM
Quote from: Sainomi on September 17, 2011, 08:23:35 PM
Quote from: Hct13345 on September 17, 2011, 08:15:38 PM
LOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOL
Title: Re: Dear Santa & Allie
Post by: hawk5005 on September 18, 2011, 05:28:29 AM
You do know that sql injection only works on some websites, not games, don't you?
Title: Re: Dear Santa & Allie
Post by: Yz on September 18, 2011, 05:31:37 AM
Quote from: paulbeer12 on September 17, 2011, 08:14:58 PM
:D
Hello Santa & Allie!
i'm going to tell you that you have a BIG WHOLE IN YOUR SERVER!
i tested sqlinj on boutcheetah game
then i typed in
UsernameField:"y+or+1=3#"
PasswordField:"anythink"

i g0t blank messsage ""

but if u type in userfield; "test"
and pw field:"anythink"
then you get error "Incorrect Password"

Hmm..
Strange So why i don't get error when i type "y+or+1=3#"
??
How you think Santa and Allie
i Give you 5 days to save server!
~ Regardz ->MegaArkade <-
;D ;D ;D ;D ;) :)
lol

I have a message for you too.

I know what human contact feels like. jealous? basement dwelling ****wit.
Title: Re: Dear Santa & Allie
Post by: hawk5005 on September 18, 2011, 05:47:20 AM
Oh wait, I just realized something, that's the most stupid sql injection I have ever seen...
Basically, he did everything wrong...