You are viewing a single comment's thread.

view the rest of the comments →

captainstrange ago

They have unsanitized SERVER_ADDR input in their header image.php.

I wonder what could go wrong.

Nothing a friendly spoofed header couldn't help them fix.