Ravens PHP Scripts: Forums
Forum Index • Forum FAQ • Search • Memberlist • Usergroups • Profile • Log in to check your private messages • Log in |
Search found 24 matches |
Ravens PHP Scripts And Web Hosting Forum Index |
Author | Message |
---|---|
Topic: Any new update is coming out regarding the HackAlert code? | |
Johan1982 Replies: 52 Views: 74472 ![]() |
![]() |
Corrected this observation in my past post , thanks ![]() |
|
Topic: Any new update is coming out regarding the HackAlert code? | |
Johan1982 Replies: 52 Views: 74472 ![]() |
![]() |
$checkmyurl = preg_replace("#(/\*.*\*/)#", "", $_SERVER["QUERY_STRING"]); //Courtesy of http://www.esnider.net
// Raven http://ravenphps ... |
|
Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2 | |
Johan1982 Replies: 13 Views: 14632 ![]() |
![]() |
SQL injection in Private_Messages Module
http://www.securityfocus.com/bid/10135/discussion/ Exploit: http://www.securityfocus.com/bid/10135/exploit/ ![]() ![]() ![]() |
|
Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2 | |
Johan1982 Replies: 13 Views: 14632 ![]() |
![]() |
Other hole:
PHP-Nuke CookieDecode Cross-Site Scripting Vulnerability http://www.securityfocus.com/bid/10128/discussion/ |
|
Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2 | |
Johan1982 Replies: 13 Views: 14632 ![]() |
![]() |
The variable '$aid' in authors.php also is vulnerable? because I have listened that also is weakness in the treatment of that variable. ![]() |
|
Topic: Questions about the Hack Attempt Script | |
Johan1982 Replies: 1 Views: 6944 ![]() |
![]() |
I have tested the hack attempt script, appears to me this message "Unable for query WHOIS information xxx.xxx.xxx" (xxx.xxx.xxx = IP), I want that arrives the notification to me by email about the ha ... | |
Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2 | |
Johan1982 Replies: 13 Views: 14632 ![]() |
![]() |
![]() |
|
Topic: Vulnerabilities in PHP-Nuke 6.x - 7.2 | |
Johan1982 Replies: 13 Views: 14632 ![]() |
![]() |
I found in the SecurityFocus Bugtrag supposed vulnerabilities in the versions 6.x to the 7.2
User-level authentication bypass in phpnuke 6.x-7.2 http://www.securityfocus.com/archive/1/360129/20 ... |
|
Topic: Other Security hole in phpBB Forums? | |
Johan1982 Replies: 4 Views: 6981 ![]() |
![]() |
Current version is 2.0.8a
I know it, which happens is that they made the versions 2.0.6d, 2.0.7, 2.0.7a, 2.0.8 and 2.0.8a in just a short time. ![]() |
|
Topic: Other Security hole in phpBB Forums? | |
Johan1982 Replies: 4 Views: 6981 ![]() |
![]() |
Thanks, which happened is that it called the attention to me of which reported in the version 2.0.6d and that version recently was made.
Greetings ![]() |
|
Topic: Other Security hole in phpBB Forums? | |
Johan1982 Replies: 4 Views: 6981 ![]() |
![]() |
http://secunia.com/advisories/11189/
![]() |
|
Topic: Couldn't update private forum permissions [FIX] | |
Johan1982 Replies: 1 Views: 6749 ![]() |
![]() |
The following code exists in admin_ug_auth.php of Nuke 6.5 but this code doesn't exist in admin_ug_auth.php of the other Nuke versions
// // Check if a private user group existis for this user a ... |
|
Topic: MS Analysis Vulnerability | |
Johan1982 Replies: 2 Views: 5200 ![]() |
![]() |
The fixes is here http://www.matyscripts.com ![]() |
|
Topic: New critical admin vulnerability in all Nukes | |
Johan1982 Replies: 22 Views: 28685 ![]() |
![]() |
Excellent ![]() Another thing, I have read this post in the Forum of phpnuke.org, http://www.phpnuke.org/modules.php?name=Forums&file=viewtopic&t=703 an GOD administrator can erase? ![]() |
|
Topic: MS Analysis Vulnerability | |
Johan1982 Replies: 2 Views: 5200 ![]() |
![]() |
PHP-Nuke MS-Analysis Module HTTP Referrer Field SQL Injection Vulnerability
http://www.securityfocus.com/bid/9948 How we can solve this vulnerability? is very important ![]() ![]() ![]() |
|
Topic: SQL injection bug in phpBB 2.08 | |
Johan1982 Replies: 9 Views: 12567 ![]() |
![]() |
The hack alert script and similar protection lines block this attack, i assume one is to remove the . in $pm_sql_user .= " but i'll wait for phpBB group's reaction.
sigh Correct, check http://ww ... |
|
Topic: SQL injection bug in phpBB 2.08 | |
Johan1982 Replies: 9 Views: 12567 ![]() |
![]() |
This I do not understand, privmsg.php comes as it says the patch ![]() ![]() |
|
Topic: SQL injection bug in phpBB 2.08 | |
Johan1982 Replies: 9 Views: 12567 ![]() |
![]() |
See this http://www.nettwerked.co.uk/code/privmsg-sqlinj.patch | |
Topic: Most Urgent Prayer Request: My Dad Has Cancer | |
Johan1982 Replies: 82 Views: 147602 ![]() |
![]() |
We prayed because it comes out this problem well and it recovers his health
Que Dios lo bendiga |
|
Topic: Yet another admin.php exploit and fix! | |
Johan1982 Replies: 31 Views: 78141 ![]() |
![]() |
Thank you very much, now yes it works to me, I even sent the news and everything seems to go perfectly, I will continue proving in case there is some problem of what treats that bug?
![]() |
|
Topic: Yet another admin.php exploit and fix! | |
Johan1982 Replies: 31 Views: 78141 ![]() |
![]() |
Yes that seems that the Space causes the failure, but I do not want to change that nick, how I can do it without it affects the space to me? ![]() |
|
Topic: Yet another admin.php exploit and fix! | |
Johan1982 Replies: 31 Views: 78141 ![]() |
![]() |
I already proved, and the result was the same one, it appears to me "Begone" and it is impossible to administer the Site.
My Admin username is Nacional Olimpia |
|
Topic: Yet another admin.php exploit and fix! | |
Johan1982 Replies: 31 Views: 78141 ![]() |
![]() |
It does not have them, but my Admin username has a space, that patch simply blocks the access to the administration of the Site, reason why nonuse that patch.
Nuke 6.0 has that vulnerability? how ... |
|
Topic: Yet another admin.php exploit and fix! | |
Johan1982 Replies: 31 Views: 78141 ![]() |
![]() |
Use Nuke 6.0 and I used that patch, my surprise is that it does not let administer the Site to me, appears me the message of "Begone" and I cannot enter the Menu of Administration how is possible to b ... | |
Ravens PHP Scripts And Web Hosting Forum Index |
Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours