Menu

#3 SECURITY FLAW

open
9
2007-09-21
2007-09-21
Macj
No

Will, you need to encrypt not only the username of the user but also their user permissions... we may even be better off encrypting the entire file. Maybe consider using the random access file so that you don't have to load the entire file in and just one user at a time.. because encrypting and decrypting that file will get tedious once there are a lot of entries. This is a MAJOR security flaw that allowed me to effortlessly set my account to admin level... bad.. fix.. now

Discussion


Log in to post a comment.