PHP Web Host - Quality Web Hosting For All PHP Applications Just Great Software
  Login or Register
 • Home • Downloads • Your Account • Forums • 
Site Navigation

Home:

 
Donate o Meter
Help Keep Our Servers Online AND Our Services Free!
Make donations with PayPal!
Donat-o-Meter Stats
September´s Goal:  $400.00
Due Date:  Sep 30
Net Balance:  $0.00
Left to go:  $400.00
Donations
 
Please Link To Me!
 
Services Available
Quality PHP Web Host!

Great Reviews!
Need help setting up your website, installing Apache, PHP, MySQL, or PhpNuke?
Need help customizing or designing scripts?
Please contact me via the Contact Us option for further details and pricing.

Link to Me

RavenPHPScripts

RavenPHPScripts

There are more Link To Me icons here.
 
Site Info v2.2.2 ©
Your IP: 38.103.63.61

 Welcome, Anonymous
Nickname
Password
Security Code:
Security Code
Type Security Code:

· Register
· Lost Password
Server Date/Time
8 September 2008 00:10:55 EDT (GMT -4)
 
Verse of the Day
 
Ravens PHP Scripts And Web Hosting: Mambo Security Alert

Search on This Topic:   
[ Go to Home | Select a New Topic ]

raven, ravennuke, raven nuke, php expert, News, news, Technology, technology, downloads, php, PHP, phpnuke themes, php scripts, php programming, php programmer, free phpnuke themes, bandwidth meter, ventrilo , ip tracking, nuke sentinel, sentinel, nukesentinel, nuke sentinal, nukesentinal, sentinal, nuke help, stock,stocks,stock quote,stock quotes,free real time quote, sentinel nuke, nukesentinel, security, ported mods, ported.mods, nuke security, kisgb, kissq, php guestbook, stock quotes, php programming, mysql, programming



Google
 
Web RavenPHPScripts (This Site)
Mambo Multiple Vulnerabilities 
Mambo Security Alert SECUNIA ADVISORY ID: SA28251

VERIFY ADVISORY: http://secunia.com/advisories/28251/

CRITICAL: Highly critical

IMPACT: Unknown, Cross Site Scripting, System access

SOFTWARE: Mambo 4.x - http://secunia.com/product/872/

DESCRIPTION: Some vulnerabilities have been reported in Mambo, one with an unknown impact and others, which can be exploited by malicious people to conduct cross-site scripting attacks or to compromise a vulnerable system. The vulnerabilities are reported in version 4.6.2. Prior versions may also be affected.
Posted by Raven on Thursday, December 27, 2007 @ 16:01:12 EST (502 reads)
(Read More... | 1785 bytes more | Score: 0)
Mambo MambWeather Module *mosConfig_absolute_path* File Inclusion 
Mambo Security Alert

SECUNIA ADVISORY ID: SA22521

VERIFY ADVISORY: http://secunia.com/advisories/22521/

CRITICAL: Highly critical

IMPACT: System access

WHERE: >From remote

SOFTWARE: MambWeather 1.x (module for Mambo) - http://secunia.com/product/12390/

DESCRIPTION: h4ntu has discovered a vulnerability in the MambWeather module for Mambo, which can be exploited by malicious people to compromise a vulnerable system. Input passed to the "mosConfig_absolute_path" parameter in modules/MambWeather/Savant2/Savant2_Plugin_options.php is not properly verified before being used to include files. This can be exploited to execute arbitrary PHP code by including files from local or external resources. Successful exploitation requires that "register_globals" is enabled. The vulnerability is confirmed in version 1.8.1. Other versions may also be affected.

SOLUTION: Edit the source code to ensure that input is properly verified. Set "register_globals" to "Off".

PROVIDED AND/OR DISCOVERED BY: h4ntu

ORIGINAL ADVISORY: http://milw0rm.com/exploits/2613
Posted by Raven on Monday, October 23, 2006 @ 08:31:53 EDT (827 reads)
( | Score: 0)
NukeSentinel™
You have been warned!
We have caught 138 shameful hackers.

NukeSentinel(tm)
 
Partners

Just Great Software
ip address masquerading
CSE HTML Validator
CoffeeCup Software
Code Authors - Home of Spam Blocker
Jaded-Designs: Where Imagination And Reality Meet
Montego Scripts: HTML Newsletter Support, Etc.
Clan-Themes: We make clans look good!

 
Downloads

Downloads Summary

 Total Files: 114
 Total Categories: 23
 Total Downloads: 157201
 Data Sent: 124.91 Gb



Recently Added

1: RavenNuke[tm] Version 2.20.01 Released [.rar pkg. 8.6meg]
[Hits: 81]
2: RavenNuke[tm] Version 2.20.01 Released [.tgz pkg. 7.4meg]
[Hits: 211]
3: RavenNuke[tm] Version 2.20.01 Released [.zip pkg. 9.5meg]
[Hits: 933]
4: RavenNuke[tm] Version 2.20.01 Released [.7z pkg. 5.5meg]
[Hits: 1653]
5: Fix Users Temp Table v2.20.00 only
[Hits: 73]
6: RavenNuke[tm] Version 2.20.00 Released [.tgz pkg. 7.51meg]
[Hits: 67]
7: RavenNuke[tm] Version 2.20.00 Released [.rar pkg. 8.74meg]
[Hits: 220]
8: RavenNuke[tm] Version 2.20.00 Released [.zip pkg. 9.7meg]
[Hits: 354]
9: RavenNuke[tm] Version 2.20.00 Released [.7z pkg. 5.15meg]
[Hits: 391]
10: admin ug auth.php - older version
[Hits: 11]

Most Popular

1: KISGB - nonNuke v5.1.1
[Hits: 16255]
2: New User Auto Activation Hack
[Hits: 12769]
3: Auto Registration Activation For Nuke v7.0
[Hits: 9348]
4: Stock Quote Module and Block
[Hits: 8132]
5: Resend, Activate, or Delete Activation Emails - V2.0.2
[Hits: 7330]
6: Site Info Block and Module v2.1.1 Used Here - phpnuke v6.5 - v7.x
[Hits: 6620]
7: Scrolling Forums Block
[Hits: 5023]
8: Ravens Who Is Where Block v1.5
[Hits: 4615]
9: PHPNuke v7.6 Patch Level v3.1
[Hits: 3880]
10: SQL Injection Hack Alert
[Hits: 3683]
 
Recommended Sites
CSE HTML Validator Helped Clean up This Page!

PC Sympathy - Your Source for PC News and Technical Support

Totally Nuked Mods

Totally Nuked Mods

Mantis Bugtracker

Nuke-Evolution

nukescripts.net

Montego Scripts - Home of HTML Newsletter

Ownag3.Com -- Since 2002

ROG_BBtoNuke_Mods_Mal3:2-3

Jaded-Designs...Where Imagination And Reality Meet

Maty Scripts - Home of MS-Analysis

Dezina Themes

CPGNuke - it's Fast, Secure, and Free

Comunidade PHP-Nuke Brasil - CNB

Codezwiz Your #1 Help Resource





pcnuke.com

FLASH-FOR-NUKE

Am-nuke.net Webmasters Resource

DaDaNuke.org

SDDesign.biz - Designing reliable,affordable, supported, FREE and unique php nuke themes

Warp-Speed.de

All the tools you need for a gaming community!

 
Content
· Link To Me Icons
· Free Web Sites and the Misconceptions of Free Code
· Making Money With Your PHPNuke Web Site - Introduction
· Acceptable Use Policies AUP
· Terms And Conditions
· PHP5 to replace PHP4
 
Old Articles

Thursday, July 31
· Content Plus 2.1.1 Released, Celebrate and Download (0)
Sunday, July 27
· Advanced-Stats :: File-Uploader :: HTTP Video-Stream-mod (0)
· Nuke_Flickr - plug in Flickr-functionality in your Portal (0)
· Brand New [2008-07-25] Mediawiki 1.13.0rc1 release candidate available (0)
Wednesday, July 23
· MultiHeadlines and MyHeadlines: news feed aggregator and scraper for phpnuke! (0)
Sunday, July 20
· Fusion is an advanced security system for PHP-Nuke: new project at SourceForge (0)
Saturday, July 05
· beta 4 version of NukeC 3.0: a great classified module - get it at nizan.it (0)
· Powerful and feature rich survey-engine: EdogsOpros v1.0.9b :: here some Demos! (0)
Tuesday, July 01
· Nuke League 2.4 is available at SportsVerona.com: get it now (0)
Wednesday, June 25
· News-Syndication for PHPNuke - get GPLized modules now (0)
Wednesday, June 11
· New release Multiheadlines 2.1-Web based feeds aggregator AND generator (0)
Wednesday, June 04
· scorpiongo.com: NukePostCard 4.0 and much much more - get inspired today (0)
· Shop-module for PHP-Nuke: hi5jamaica.com and dadanuke.org: get code now (0)
· Ts Contact 1.0 Multilanguage (0)
Saturday, May 31
· NukeGroups(tm) Suggestions Being Accepted (0)
Friday, May 23
· pancake.org : sergids.com : MP3player and Top Music Module - see online-demos (0)
· Nuke Guiki 1.3.0, an improved PHP-Nuke Wiki module (0)
Tuesday, May 20
· ewebsite.biz: great hacks for articles, modules, blocks etc. (0)
· Wars Module 2.21 (0)
Friday, May 16
· NukeSEO.com: get nukeWYSIWYG :: nukeSEO :: nukePIE ::nukeFEED - and support (0)

Older Articles
 
Daily Inspiration
 
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2008 by Raven
Proud to be listed at Lobo Links Web Directory

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::

:: fisubice Theme Recoded To 100% W3C CSS & HTML 4.01 Transitional Compliance by Raven and 64bitguy ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum