hi!
könntet ihr euch vl mal folgenden quellcode einer passworteingabe ansehen?? sieht für mich so aus als wird das passwort von einer datenbank geholt oder? also nicht knackbar!
<script type="text/Javascript">
<!--
function load_box(user_id,box_name,datei,var1,var2,var3,var4,var5) {
try {
req_load_box = window.XMLHttpRequest?new XMLHttpRequest():
new ActiveXObject("Microsoft.XMLHTTP");
} catch (e) {
//Kein AJAX Support
}
req_load_box.onreadystatechange = function(){handleResponse_load_box(box_name);};
document.getElementById(box_name).innerHTML = '<font style=\"font-size:12px; color:#FF0000;\"><img src="http://images.XXXXXXX.com/bittewarten.gif"><br />wird geladen...</font><br /><br />';
req_load_box.open('get', 'http://www.XXXXXXX.com/members/'+ datei +'.php?user_id='+ user_id +'&'+ var1 +'&'+ var2 +'&'+ var3 +'&'+ var4 +'&');
req_load_box.send(null);
}
function handleResponse_load_box(box_name) {
if ((req_load_box.readyState == 4) && (req_load_box.status == 200)) {
document.getElementById(box_name).innerHTML = req_load_box.responseText;
}
}
function send_formmail_box(user_id,box_name,datei,var1,var2,var3,var4,var5) {
try {
req_sendmail_box = window.XMLHttpRequest?new XMLHttpRequest():
new ActiveXObject("Microsoft.XMLHTTP");
} catch (e) {
//Kein AJAX Support
}
// var str = 'text='+ document.form_mail.text.value + '&title='+ document.form_mail.title.value;
var str = 'text='+ encodeURIComponent( document.getElementById("text").value) +
'&title='+ encodeURIComponent( document.getElementById("title").value);
document.getElementById(box_name).innerHTML = '<font style=\"font-size:12px; color:#FF0000;\"><img src="http://images.XXXXXXX.com/bittewarten.gif"><br />wird geladen...</font><br /><br />';
req_sendmail_box.onreadystatechange = function(){handleResponse_send_formmail_box(box_name);};
req_sendmail_box.open('POST', 'http://www.XXXXXX.com/members/'+ datei +'.php?user_id='+ user_id +'&'+ var1 +'&'+ var2 +'&'+ var3 +'&'+ var4 +'&'+ var5, true);
req_sendmail_box.setRequestHeader('Content-Type', 'application/x-www-form-urlencoded');
req_sendmail_box.send(str);
}
function handleResponse_send_formmail_box(box_name) {
if ((req_sendmail_box.readyState == 4) && (req_sendmail_box.status == 200)) {
document.getElementById(box_name).innerHTML = req_sendmail_box.responseText;
}
}
//-->
</script>
danke und lg
könntet ihr euch vl mal folgenden quellcode einer passworteingabe ansehen?? sieht für mich so aus als wird das passwort von einer datenbank geholt oder? also nicht knackbar!
<script type="text/Javascript">
<!--
function load_box(user_id,box_name,datei,var1,var2,var3,var4,var5) {
try {
req_load_box = window.XMLHttpRequest?new XMLHttpRequest():
new ActiveXObject("Microsoft.XMLHTTP");
} catch (e) {
//Kein AJAX Support
}
req_load_box.onreadystatechange = function(){handleResponse_load_box(box_name);};
document.getElementById(box_name).innerHTML = '<font style=\"font-size:12px; color:#FF0000;\"><img src="http://images.XXXXXXX.com/bittewarten.gif"><br />wird geladen...</font><br /><br />';
req_load_box.open('get', 'http://www.XXXXXXX.com/members/'+ datei +'.php?user_id='+ user_id +'&'+ var1 +'&'+ var2 +'&'+ var3 +'&'+ var4 +'&');
req_load_box.send(null);
}
function handleResponse_load_box(box_name) {
if ((req_load_box.readyState == 4) && (req_load_box.status == 200)) {
document.getElementById(box_name).innerHTML = req_load_box.responseText;
}
}
function send_formmail_box(user_id,box_name,datei,var1,var2,var3,var4,var5) {
try {
req_sendmail_box = window.XMLHttpRequest?new XMLHttpRequest():
new ActiveXObject("Microsoft.XMLHTTP");
} catch (e) {
//Kein AJAX Support
}
// var str = 'text='+ document.form_mail.text.value + '&title='+ document.form_mail.title.value;
var str = 'text='+ encodeURIComponent( document.getElementById("text").value) +
'&title='+ encodeURIComponent( document.getElementById("title").value);
document.getElementById(box_name).innerHTML = '<font style=\"font-size:12px; color:#FF0000;\"><img src="http://images.XXXXXXX.com/bittewarten.gif"><br />wird geladen...</font><br /><br />';
req_sendmail_box.onreadystatechange = function(){handleResponse_send_formmail_box(box_name);};
req_sendmail_box.open('POST', 'http://www.XXXXXX.com/members/'+ datei +'.php?user_id='+ user_id +'&'+ var1 +'&'+ var2 +'&'+ var3 +'&'+ var4 +'&'+ var5, true);
req_sendmail_box.setRequestHeader('Content-Type', 'application/x-www-form-urlencoded');
req_sendmail_box.send(str);
}
function handleResponse_send_formmail_box(box_name) {
if ((req_sendmail_box.readyState == 4) && (req_sendmail_box.status == 200)) {
document.getElementById(box_name).innerHTML = req_sendmail_box.responseText;
}
}
//-->
</script>
danke und lg