4 ms·
I remember back in the day you could embed <img src="http://someothersite.com/forum/ucp.php?mode=logout http://someothersite.com/forum/ucp.php?mode=logout"> in
by grrowl 1y ago
I remember back in the day you could embed <img src="http://someothersite.com/forum/ucp.php?mode=logout http://someothersite.com/forum/ucp.php?mode=logout"> in your forum signature and screw with everyone's sessions across the web
- anthk 1y ago<img src="C:\con\con"></img>
- jbverschoor 1y agoIt's essentially the same, as many apps use HTTP server + html client instead of something native or with another IPC.
- lobsterthief 1y agoHaha I remember that. The solution at the time for many forum admins was to simply state that anyone found to be doing that would be permabanned. Which was enough to make it stop completely, at least for the forums that I moderated. Different times indeed.
- sedatk 1y agoOr you could just make the logout route POST-only. Problem solved.