I'm looking for a safe and secure joke module for my rn 2.20 website. the old joke module 1.7 and 2 have been flags as having security issue with sql injections. In addition, there are a lot of holes and bugs in Adamin NukeJ okes V1.0b and I suspect after looking at the code as I tried to fix the problems that it to has security holes.
Any recommends? My site members are going crazy with jokes in forum and want to suppor this in a more efficent manner?
I would pay for a custom script, montego - seriously or any one else that is a thechno stud.
Thanks for all comments and information in advance.
Joined: Aug 29, 2004 Posts: 7264 Location: Arizona
Posted:
Tue Mar 04, 2008 9:18 pm
Just trying to think what you might be able to use that is already a module. Could you somehow use the FAQ module for this? Or, possibly the Reviews module?
Thanks for the input. I actually did something like that. I first started with Joke Module 1b or something like that and found a good foundation but it had security concerns and alot of little errors every where that needed to be fixed. So I took your nutshell input on addslashes, check_html(), intval, etc.. Looked at modules similar to the ones you mention above and started fixing/coding. I ended up using FKCeditor used in Raven, set up new buttons for editor, coded an auto submit options, coded in user community points to joke submission, and some other stuff. We are rolling.
Please take a look and let me know how the noob did at his first fixer upper. Again thanks for the security input. BTW I also commented out all search functions for now since I know this can be a security issue if not done correctly.
The site I admin all by myself is:
brothers-in-arm.com
The joke module is called Joke Gallery look in navigational menu.
View next topic View previous topic
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum