PHP Web Host - Quality Web Hosting For All PHP Applications Free RavenNuke(tm) Add Ons
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   This topic is locked: you cannot edit posts or make replies.
Author Message
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 16986
Location: Kansas

PostPosted: Wed Feb 18, 2009 5:27 pm Reply with quote Back to top

=================================
SECURITY QUICK GUIDE
=================================
To ensure your site is patched/secured in the shortest possible time, please upload/replace the following immediately!

** If you are upgrading from ANY version of RavenNuke(tm) that uses the CAPTCHA System: **
images/captcha.php
**

** If you are upgrading from ANY version of RavenNuke(tm) that uses the Resend Email Module: **
modules/Resend_Email/xx.xx - the entire Resend_Email folder/directory
**

** If you are upgrading from RavenNuke(tm) v2.30.00: **
admin.php
modules/Your_Account/xx.xx - the entire Your_Account folder/directory
**


** We strongly reccomend that you make backups of all of the above mentioned files and just upload/replace them all
REGARDLESS of what version of RavenNuke(tm) you are using. Then of you have issues with the new files please
post in the forums for help. These files offer fixes and/or patches for various security issues.
**

0001349: [Captcha] Full path disclosure and remote detection of local files in captcha.php (KGuske) - resolved.
0001371: [Core - Modules] Sql Injection in "Resend_Email" module (Raven) - resolved.
0001350: [Module - Your Account (RNYA)] Remote Php Code Execution in avatarlist.php (KGuske) - resolved.
0001351: [Module - Your Account (RNYA)] Remote Php Code Execution in Your Account module (KGuske) - resolved.
0001376: [Module - Your Account (RNYA)] XSS Vulnerability in Your_Account (Evaders99) - resolved.
0001358: [Security / Vulnerability] Additional Form validation (Guardian2003) - resolved.
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
Display posts from previous:       
Post new topic   This topic is locked: you cannot edit posts or make replies.

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum