Hacker News new | ask | show | jobs
by SteSteSte 4325 days ago
1) The Url isn't exactly memorable.

2) I am able to traverse your directories eg http://itripd.com/js/

I don't know about apache so was unable to find a web config kinda file

3) I tried some sql injection and got this response "The URI you submitted has disallowed characters."

I assume you are doing this manually rather than using sql parameters?

4) Inline CSS...yuck

5) Links like this http://itripd.com/trip/4 arn't very friendly.