Great Reviews!Need help setting up your website, installing Apache, PHP, MySQL, or PhpNuke?Need help customizing or designing scripts?Please contact me via the Contact Us option for further details and pricing.
IMPACT: Exposure of system information, Exposure of sensitive information, System access
WHERE: >From remote
SOFTWARE: phpbb-openid (module for phpBB) 0.x - http://secunia.com/product/15904/
DESCRIPTION: xoron has reported a vulnerability in the phpbb-openid module for phpBB, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Posted by Raven on Tuesday, October 02, 2007 @ 22:33:49 EDT (375 reads) (Read More... | 1509 bytes more | Score: 0)
Critical Update NukeSentinel(tm) 2.5.13
2.5.13 CHANGES (2007-09-28): · Includes IP2Country 2007-09-28 updated imports. · Not in upgrade package. · Serious security hole patched.
It is HIGHLY recommended you update.
Note:Please Note: The sec hole is/was a NukeSentinel(tm) issue. Prior versions have the same issue so PLEASE upgrade.
Posted by BobMarion on Friday, September 28, 2007 @ 23:09:34 EDT (510 reads) ( | Score: 0)
Sneak a Peak
Anders writes "Sneak a Peak - ScGuestBook - Moore Than a GuestBook
IMPACT: Exposure of system information, Exposure of sensitive information
WHERE: >From remote
SOFTWARE: Dance Music 1.x (module for PHP-Nuke) - http://secunia.com/product/15830/
DESCRIPTION: Janek Vind has discovered a vulnerability in the Dance Music module for PHP-Nuke, which can be exploited by malicious people to disclose sensitive information.
Posted by Raven on Wednesday, September 26, 2007 @ 22:47:45 EDT (414 reads) (Read More... | 1387 bytes more | Score: 0)
**IMPORTANT** HoS Vulnerability Found!
Duck writes "I would like to inform the community that I discovered a vulnerability in the Hall of Shame Module (HoS) I wrote.
It came to my attention that my server was running a script that was using up processor resources and lagging my shared host environment. The process was running under my account so I did some searching and found out there were files uploaded to the HoS punkss and punkdemo folders where files uploaded by admins are stored.
It seems they were using my server as a mail and chat relay. I still looking into the matter to figure out how they got in and how to make sure it doesn't happen again but in the meantime I wanted to inform the community so people can secure themselves as quickly as possible.
First step to do is check for any sub-folders under punkss and punkdemos and "
Posted by Raven on Wednesday, September 26, 2007 @ 22:43:23 EDT (359 reads) (Read More... | 2128 bytes more | Score: 0)
SimpleCart v.1.0 Now Available for Public Download!
forgotz writes "Click
here for screen shots. Version 1.0
now includes unlimited categories and products! If you are not using SimpleCart for your PHP-Nuke
commerce solution, then you are working too hard! So easy to install,
configure and use. With the included PayPal Button Factory, creating
code for your service or product is just a simple click away. Create
your own custom store logo and insert into your theme images directory,
for more personalization than any version previous. Look no further
than here for download details
(registration required)."
Posted by Raven on Wednesday, September 26, 2007 @ 22:37:14 EDT (636 reads) (Read More... | 1872 bytes more | Score: 5)
NukeSentinel(tm) 2.5.12 Released - Important Update
2.5.12 CHANGES (2007-09-25): · Includes IP2Country 2007-09-21 updated imports. · Not in upgrade package. · Addressed security risk in nsbypass.php file. · Added security escaping on nukesentinel.php file.
If you download before this notice please re-download.
Posted by BobMarion on Wednesday, September 26, 2007 @ 01:49:15 EDT (361 reads) ( | Score: 0)
Gears of War theme
daltoniko writes "Release a new theme by rubapanettoni.com
You can see the live preview here
and download for free here
(registered user)
Enjoy."
Posted by Raven on Tuesday, September 25, 2007 @ 23:59:09 EDT (387 reads) ( | Score: 0)
My Last Visitors 1.0
Anders writes "My Last Visitors 1.0 for PHPNuke 8.1/8.1 with patch 3.4
Show to user the last 5 members that visited his/her page and the names are linked to their pages
http://www.nextnet.se"
Posted by Raven on Tuesday, September 25, 2007 @ 23:57:53 EDT (315 reads) ( | Score: 0)
Story Highlights * Investigators say hackers moved information to Chinese-language Web sites
* The FBI is investigating the incidents, a congressional staffer said
* "Significant amounts" of information were compromised, a staffer said
*Unisys vigorously disputes the allegations made in today's article
Posted by Raven on Tuesday, September 25, 2007 @ 09:27:02 EDT (358 reads) ( | Score: 0)