Author |
Message |
rickleigh
Worker


Joined: Jan 06, 2009
Posts: 183
|
Posted:
Wed Feb 18, 2009 6:44 pm |
|
Should we check any certain Dir. or database to make sure we haven't been a victim yet? Right now I'm not seeing any changes but, I didn't know if there is any back doors I should be looking for.
Also I didn't see you mention what the hole was that was found.
Thanks |
|
|
|
 |
rickleigh

|
Posted:
Wed Feb 18, 2009 6:47 pm |
|
Raven I didnt no if you noticed. but, the posting dates are showing the 19th and as far as I know its the 18th. I've had a long day so maybe I missed a day some where  |
|
|
|
 |
Guardian2003
Site Admin

Joined: Aug 28, 2003
Posts: 6799
Location: Ha Noi, Viet Nam
|
Posted:
Wed Feb 18, 2009 6:55 pm |
|
rickleigh wrote: | Raven I didnt no if you noticed. but, the posting dates are showing the 19th and as far as I know its the 18th. I've had a long day so maybe I missed a day some where |
There could be a difference between the server time and your 'local' time  |
|
|
|
 |
rickleigh

|
Posted:
Wed Feb 18, 2009 7:14 pm |
|
Guardian2003,
Thanks I checked my profile and it was set different then what my area is. Not sure why, as I thought I set this up once. No harm done  |
|
|
|
 |
selectric
Regular


Joined: Aug 06, 2008
Posts: 65
|
Posted:
Thu Feb 19, 2009 11:28 am |
|
Hello, I read the major warning on ravennuke.com, and here... Can someone with authority please tell me if rn2.20.01 is vulnerable to this issue and requires the fix? OR is this just for the newer version? THANK YOU! |
|
|
|
 |
spasticdonkey
RavenNuke(tm) Development Team

Joined: Dec 02, 2006
Posts: 1693
Location: Texas, USA
|
Posted:
Thu Feb 19, 2009 11:36 am |
|
Well I dont have any authority - however here's a bit from the security changelog
RavenNuke(tm) v2.30.01 - Security Specific Change Log wrote: | To ensure your site is patched/secured in the shortest possible time, please upload/replace the following immediately!
** If you are upgrading from ANY version of RavenNuke(tm) that uses the CAPTCHA System: **
images/captcha.php
**
** If you are upgrading from ANY version of RavenNuke(tm) that uses the Resend Email Module: **
modules/Resend_Email/xx.xx - the entire Resend_Email folder/directory
**
** If you are upgrading from RavenNuke(tm) v2.30.00: **
admin.php
modules/Your_Account/xx.xx - the entire Your_Account folder/directory |
|
|
|
|
 |
Guardian2003

|
Posted:
Thu Feb 19, 2009 11:58 am |
|
In other words yes you need to upgrade and do it immediately. |
|
|
|
 |
selectric

|
Posted:
Thu Feb 19, 2009 12:02 pm |
|
Thank you for your response(s). I went ahead and did the fix.
AND TO THOSE WHO WORK ON RAVENNUKE....
THANK YOU!
Because if we didnt have these people fixing up this CMS and offering this community for support........... |
|
|
|
 |
|