RF Up5 GM Commands

06/10/2008 15:55 EliteKillerMaster#16
Quote:
Originally Posted by johnjerks View Post
hello, 1st of all thank u very much...
still have problem..
how can we cancel the GM name?
EX. [GM] gaurdian
and it will become gaurdian
U already is a GM or u just put [GM] on u char name?
06/11/2008 05:10 arkaiwelintz#17
what is SQL injection???
06/11/2008 05:52 wardriving#18
if you succeeded in this pls ban the original gm because he banned me >.<
06/11/2008 06:42 simastah#19
ahahaha ROFL..

but i dont know how to use SQL injection T_T
06/11/2008 06:42 simastah#20
ahahaha ROFL..

but i dont know how to use SQL injection T_T
06/11/2008 07:33 johnjerks#21
im not putting the word GM, actually im a GM!
im still luking for that thread...can u help plssss!
only that command that i am luking for..
06/11/2008 07:49 zhoea#22
If your a GM! can you summon an item?????????

Just type on your Chat Map

%name of the item or mob code!
06/11/2008 07:50 okatokat#23
[IMG]http://www.***************/pix/finger04/images/finger0405.jpg[/IMG]
[IMG]http://www.***************/pix/finger04/images/finger0406.jpg[/IMG]
[IMG]http://www.***************/pix/finger04/images/finger0407.jpg[/IMG]
[IMG]http://www.***************/pix/finger04/images/finger0408.jpg[/IMG]
06/11/2008 09:08 luigi002#24
TNX FOR THIS
06/11/2008 14:32 johnjerks#25
yeah! i can do wat i want!..........but i cant trade my items that i made to other char.
in order trade this, i must be in char mode not in GM mode.
06/11/2008 20:25 98mtl6#26
read about SQL Injection here:
SQL injection - Wikipedia, the free encyclopedia

In my POV:
SQL injection isn't that easy, since you need the SOURCE code of the program.
also, after having the source code, you must search for a vulnerable code inside the program.

for example the server crasher using the abc' =)
since private server file scripts have incorrectly filtered SQL Statements, so you can use it to inject your own SQL Statement to make your character a GM, but the RF Server Files have something to counter it, it disconnects all users from itself and avoids SQL Injection. :)
06/11/2008 20:36 EliteKillerMaster#27
Quote:
Originally Posted by 98mtl6 View Post
read about SQL Injection here:
SQL injection - Wikipedia, the free encyclopedia

In my POV:
SQL injection isn't that easy, since you need the SOURCE code of the program.
also, after having the source code, you must search for a vulnerable code inside the program.

for example the server crasher using the abc' =)
since private server file scripts have incorrectly filtered SQL Statements, so you can use it to inject your own SQL Statement to make your character a GM, but the RF Server Files have something to counter it, it disconnects all users from itself and avoids SQL Injection. :)
Nice bro, but how some players can do this?
Maybe other form of attack for Inject statements?
06/11/2008 20:38 98mtl6#28
yes, there are many forms of attack, but it is for you to discover since it's hard to read statements in assembly. actually it's not hard but it'll take much time just to find a vulnerable part.
06/11/2008 20:45 EliteKillerMaster#29
Specially for noobs in this part, like me :)
But thanks anyway
06/12/2008 10:49 98mtl6#30
OR, Have a copy of the server files that are used in the private/retail server that you are playin'. :)