|
|
|||||||||
|
|||||||||
|
|||||||||
| |
||
| |||||||||
![]() |
|
|
«
Previous Thread
|
Next Thread
»
|
Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
#1
|
||||
|
||||
|
Splashschools Site Release
Another new site myself and a collegue recently released for a local childrens work team. Let me know what ya think. Fairly simple, not a lot of programming but the schedule is dynamic
![]() www.splashschools.org.uk cheers, RF
__________________
|
|
#2
|
|||
|
|||
|
A crisp, clean, colourful and informative site RF. I only found the text formatting to be out in the links page - regarding wildIT.co.uk which pokes out of your dotted style box. Would like to have seen more pictures though say a gallery or something and for future reference you could extend the site for kids and have a subsite for those characters that you use to promote the club. Job done in my book.
![]() |
|
#3
|
||||
|
||||
|
Quote:
I will look into the text formatting thing! Thanks RF |
|
#4
|
||||
|
||||
|
Sql injectible...validate the querystring parameters, validate the form values (month values) being returned as well.
|
|
#5
|
||||
|
||||
|
Quote:
![]() thanks, |
|
#6
|
||||
|
||||
|
Yes, I was able to inject through the drop down.
|
|
#7
|
||||
|
||||
|
Quote:
thanks |
|
#8
|
||||
|
||||
|
really cool design, well done!
anyhow, this generates error message: http://www.splashschools.org.uk/eventInfo.php?ei=aa I was also able to perform SQL injection attack very easily by the way.. |
|
#9
|
||||
|
||||
|
Quote:
Save the source to my local machine. Change the values. Post the page back to your server/website. |
|
#10
|
||||
|
||||
|
Quote:
|
|
#11
|
||||
|
||||
|
Quote:
Thanks! |