Ravens PHP Scripts: Forums
 

 

Search found 24 matches
Author Message
 Topic: Any new update is coming out regarding the HackAlert code?
Johan1982

Replies: 52
Views: 74472

PostForum: Hack Attempt Script   Posted: Tue Apr 27, 2004 2:44 pm   Subject: Any new update is coming out regarding the HackAlert code?
Corrected this observation in my past post , thanks Cool
 Topic: Any new update is coming out regarding the HackAlert code?
Johan1982

Replies: 52
Views: 74472

PostForum: Hack Attempt Script   Posted: Tue Apr 27, 2004 2:06 pm   Subject: re: Any new update is coming out regarding the HackAlert cod
$checkmyurl = preg_replace("#(/\*.*\*/)#", "", $_SERVER["QUERY_STRING"]); //Courtesy of http://www.esnider.net
// Raven http://ravenphps ...
 Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2
Johan1982

Replies: 13
Views: 14632

PostForum: Security - PHP Nuke   Posted: Tue Apr 20, 2004 1:29 pm   Subject: re: Vulnerabilities in PHP-Nuke 6.x - 7.2
SQL injection in Private_Messages Module

http://www.securityfocus.com/bid/10135/discussion/

Exploit:
http://www.securityfocus.com/bid/10135/exploit/

Exclamation Exclamation Exclamation
 Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2
Johan1982

Replies: 13
Views: 14632

PostForum: Security - PHP Nuke   Posted: Sat Apr 17, 2004 9:39 pm   Subject: Vulnerabilities in PHP-Nuke 6.x - 7.2
Other hole:

PHP-Nuke CookieDecode Cross-Site Scripting Vulnerability

http://www.securityfocus.com/bid/10128/discussion/
 Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2
Johan1982

Replies: 13
Views: 14632

PostForum: Security - PHP Nuke   Posted: Sat Apr 17, 2004 12:32 pm   Subject: Vulnerabilities in PHP-Nuke 6.x - 7.2
The variable '$aid' in authors.php also is vulnerable? because I have listened that also is weakness in the treatment of that variable. Exclamation
 Topic: Questions about the Hack Attempt Script
Johan1982

Replies: 1
Views: 6944

PostForum: Hack Attempt Script   Posted: Wed Apr 14, 2004 6:50 pm   Subject: Questions about the Hack Attempt Script
I have tested the hack attempt script, appears to me this message "Unable for query WHOIS information xxx.xxx.xxx" (xxx.xxx.xxx = IP), I want that arrives the notification to me by email about the ha ...
 Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2
Johan1982

Replies: 13
Views: 14632

PostForum: Security - PHP Nuke   Posted: Tue Apr 13, 2004 12:33 am   Subject: Vulnerabilities in PHP-Nuke 6.x - 7.2
Cool Thanks, I have installed it in my Web and everything seems to work well.
 Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2
Johan1982

Replies: 13
Views: 14632

PostForum: Security - PHP Nuke   Posted: Mon Apr 12, 2004 8:09 pm   Subject: Vulnerabilities in PHP-Nuke 6.x - 7.2
I found in the SecurityFocus Bugtrag supposed vulnerabilities in the versions 6.x to the 7.2

User-level authentication bypass in phpnuke 6.x-7.2

http://www.securityfocus.com/archive/1/360129/20 ...
 Topic: Other Security hole in phpBB Forums?
Johan1982

Replies: 4
Views: 6981

PostForum: Security - PHP Nuke   Posted: Fri Apr 09, 2004 3:08 pm   Subject: Other Security hole in phpBB Forums?
Current version is 2.0.8a

I know it, which happens is that they made the versions 2.0.6d, 2.0.7, 2.0.7a, 2.0.8 and 2.0.8a in just a short time. Exclamation and there was no fix in profile.php between thos ...
 Topic: Other Security hole in phpBB Forums?
Johan1982

Replies: 4
Views: 6981

PostForum: Security - PHP Nuke   Posted: Fri Apr 09, 2004 12:48 pm   Subject: Other Security hole in phpBB Forums?
Thanks, which happened is that it called the attention to me of which reported in the version 2.0.6d and that version recently was made.

Greetings Cool
 Topic: Other Security hole in phpBB Forums?
Johan1982

Replies: 4
Views: 6981

PostForum: Security - PHP Nuke   Posted: Thu Apr 08, 2004 9:12 pm   Subject: Other Security hole in phpBB Forums?
http://secunia.com/advisories/11189/

Rolling Eyes
 Topic: Couldn't update private forum permissions [FIX]
Johan1982

Replies: 1
Views: 6749

PostForum: Bug Fixes   Posted: Sun Apr 04, 2004 2:43 pm   Subject: Couldn't update private forum permissions [FIX]
The following code exists in admin_ug_auth.php of Nuke 6.5 but this code doesn't exist in admin_ug_auth.php of the other Nuke versions

//
// Check if a private user group existis for this user a ...
 Topic: MS Analysis Vulnerability
Johan1982

Replies: 2
Views: 5200

PostForum: Security - PHP Nuke   Posted: Tue Mar 30, 2004 6:00 pm   Subject: MS Analysis Vulnerability
The fixes is here http://www.matyscripts.com Cool
 Topic: New critical admin vulnerability in all Nukes
Johan1982

Replies: 22
Views: 28685

PostForum: Security - PHP Nuke   Posted: Tue Mar 30, 2004 1:54 pm   Subject: New critical admin vulnerability in all Nukes
Excellent Cool

Another thing, I have read this post in the Forum of phpnuke.org, http://www.phpnuke.org/modules.php?name=Forums&file=viewtopic&t=703 an GOD administrator can erase? Question
 Topic: MS Analysis Vulnerability
Johan1982

Replies: 2
Views: 5200

PostForum: Security - PHP Nuke   Posted: Tue Mar 30, 2004 12:24 am   Subject: re: MS Analysis Vulnerability
PHP-Nuke MS-Analysis Module HTTP Referrer Field SQL Injection Vulnerability

http://www.securityfocus.com/bid/9948

How we can solve this vulnerability? is very important Exclamation Exclamation Exclamation
 Topic: SQL injection bug in phpBB 2.08
Johan1982

Replies: 9
Views: 12567

PostForum: Security - PHP Nuke   Posted: Sun Mar 28, 2004 8:43 pm   Subject: SQL injection bug in phpBB 2.08
The hack alert script and similar protection lines block this attack, i assume one is to remove the . in $pm_sql_user .= " but i'll wait for phpBB group's reaction.

sigh

Correct, check http://ww ...
 Topic: SQL injection bug in phpBB 2.08
Johan1982

Replies: 9
Views: 12567

PostForum: Security - PHP Nuke   Posted: Fri Mar 26, 2004 11:58 pm   Subject: SQL injection bug in phpBB 2.08
This I do not understand, privmsg.php comes as it says the patch Rolling Eyes Rolling Eyes
 Topic: SQL injection bug in phpBB 2.08
Johan1982

Replies: 9
Views: 12567

PostForum: Security - PHP Nuke   Posted: Fri Mar 26, 2004 11:26 pm   Subject: SQL injection bug in phpBB 2.08
See this http://www.nettwerked.co.uk/code/privmsg-sqlinj.patch
 Topic: Most Urgent Prayer Request: My Dad Has Cancer
Johan1982

Replies: 82
Views: 147602

PostForum: Prayer/Praise Requests   Posted: Wed Dec 10, 2003 7:11 pm   Subject: re: Most Urgent Prayer Request: My Dad Has Cancer
We prayed because it comes out this problem well and it recovers his health

Que Dios lo bendiga
 Topic: Yet another admin.php exploit and fix!
Johan1982

Replies: 31
Views: 78141

PostForum: Security - PHP Nuke   Posted: Fri Oct 24, 2003 9:36 am   Subject: Yet another admin.php exploit and fix!
Thank you very much, now yes it works to me, I even sent the news and everything seems to go perfectly, I will continue proving in case there is some problem of what treats that bug?

Cool Greeting ...
 Topic: Yet another admin.php exploit and fix!
Johan1982

Replies: 31
Views: 78141

PostForum: Security - PHP Nuke   Posted: Fri Oct 24, 2003 9:22 am   Subject: Yet another admin.php exploit and fix!
Yes that seems that the Space causes the failure, but I do not want to change that nick, how I can do it without it affects the space to me? Question
 Topic: Yet another admin.php exploit and fix!
Johan1982

Replies: 31
Views: 78141

PostForum: Security - PHP Nuke   Posted: Fri Oct 24, 2003 9:19 am   Subject: Yet another admin.php exploit and fix!
I already proved, and the result was the same one, it appears to me "Begone" and it is impossible to administer the Site.

My Admin username is Nacional Olimpia
 Topic: Yet another admin.php exploit and fix!
Johan1982

Replies: 31
Views: 78141

PostForum: Security - PHP Nuke   Posted: Thu Oct 23, 2003 10:48 pm   Subject: Yet another admin.php exploit and fix!
It does not have them, but my Admin username has a space, that patch simply blocks the access to the administration of the Site, reason why nonuse that patch.

Nuke 6.0 has that vulnerability? how ...
 Topic: Yet another admin.php exploit and fix!
Johan1982

Replies: 31
Views: 78141

PostForum: Security - PHP Nuke   Posted: Thu Oct 23, 2003 5:00 pm   Subject: Yet another admin.php exploit and fix!
Use Nuke 6.0 and I used that patch, my surprise is that it does not let administer the Site to me, appears me the message of "Begone" and I cannot enter the Menu of Administration how is possible to b ...
 

 Jump to:   

Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©