1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Won't Fix Bypass 'Please enter a valid message.' post restriction.

Discussion in 'Resolved Bug Reports' started by Kyle12, Feb 2, 2012.

  1. Kyle12

    Kyle12 New Member

    You can bypass the the "Please enter a valid message." restriction pretty easily. All you have to do is use empty bbcode tags (Bold seems to reproduce it fairly easily). See the below post for an example.

    Sorry if this isn't considered a bug.
    Kyle.
     
  2. Kyle12

    Kyle12 New Member

  3. Mike

    Mike XenForo Developer Staff Member

    There are a few other ways you can do similar things - 1x1 image, text the same as the background, etc. It's not possible to prevent, so it's more something that needs to be handled by active moderation.
     
  4. Kyle12

    Kyle12 New Member

    Well, posting with a 1x1 image still contains content, along with 'invisible' text. This is a content less post, which is possible to prevent.

    While I don't think this is resolved at all, alright. (n)
     
  5. DBA

    DBA Well-Known Member

     
  6. DBA

    DBA Well-Known Member

    You can also reply with a quote and not add anything to it. :confused:
     
  7. Kyle12

    Kyle12 New Member

    Completely different beast @DBA, same with @Mike's examples.

    You shouldn't be able to bypass the no content post restriction by using bbcode. Posting an image, or posting with the same bg contrast/colour font is completely different. Why is it different? There is actually content!

    This is clearly a bug, there's nothing I can do besides making my own edits if the authors think otherwise.

    Appologies for grammar/spelling, I'm on my phone.
     
  8. DBA

    DBA Well-Known Member

    Don't think the "@" works on here. :p

    Be cool if it did though. (y)
     
    Kyle12 likes this.
  9. Kyle12

    Kyle12 New Member

  10. DBA

    DBA Well-Known Member

    Wow that bunny is really creeping me out, better go disable signatures again.
     
  11. Kyle12

    Kyle12 New Member

    Sorry, forgot I had that. Thanks!
     
  12. MGSteve

    MGSteve Well-Known Member

    I'd have thought it would be an easy enough check though. Just remove all the bbcode from the post, if the length of the remaining content is under the limit, then reject the post. In vB you could use pretty much the same trick to bypass the censor filter too.
     

Share This Page