PHP Web Host - Quality Web Hosting For All PHP Applications Free RavenNuke(tm) Add Ons
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
rickleigh
Worker
Worker


Joined: Jan 06, 2009
Posts: 183

PostPosted: Wed Feb 18, 2009 6:44 pm Reply with quote Back to top

Should we check any certain Dir. or database to make sure we haven't been a victim yet? Right now I'm not seeing any changes but, I didn't know if there is any back doors I should be looking for.

Also I didn't see you mention what the hole was that was found.

Thanks
View user's profile Send private message
rickleigh
Worker
Worker


Joined: Jan 06, 2009
Posts: 183

PostPosted: Wed Feb 18, 2009 6:47 pm Reply with quote Back to top

Raven I didnt no if you noticed. but, the posting dates are showing the 19th and as far as I know its the 18th. I've had a long day so maybe I missed a day some where Wink
View user's profile Send private message
Guardian2003
Site Admin


Joined: Aug 28, 2003
Posts: 6373
Location: Vsetin, Czech Republic

PostPosted: Wed Feb 18, 2009 6:55 pm Reply with quote Back to top

rickleigh wrote:
Raven I didnt no if you noticed. but, the posting dates are showing the 19th and as far as I know its the 18th. I've had a long day so maybe I missed a day some where Wink

There could be a difference between the server time and your 'local' time Wink
View user's profile Send private message Send e-mail Visit poster's website
rickleigh
Worker
Worker


Joined: Jan 06, 2009
Posts: 183

PostPosted: Wed Feb 18, 2009 7:14 pm Reply with quote Back to top

Guardian2003,

Thanks I checked my profile and it was set different then what my area is. Not sure why, as I thought I set this up once. No harm done Smile
View user's profile Send private message
selectric
Regular
Regular


Joined: Aug 06, 2008
Posts: 65

PostPosted: Thu Feb 19, 2009 11:28 am Reply with quote Back to top

Hello, I read the major warning on ravennuke.com, and here... Can someone with authority please tell me if rn2.20.01 is vulnerable to this issue and requires the fix? OR is this just for the newer version? THANK YOU!
View user's profile Send private message
spasticdonkey
RavenNuke(tm) Development Team


Joined: Dec 02, 2006
Posts: 1364
Location: Texas, USA

PostPosted: Thu Feb 19, 2009 11:36 am Reply with quote Back to top

Well I dont have any authority Smile - however here's a bit from the security changelog

RavenNuke(tm) v2.30.01 - Security Specific Change Log wrote:
To ensure your site is patched/secured in the shortest possible time, please upload/replace the following immediately!

** If you are upgrading from ANY version of RavenNuke(tm) that uses the CAPTCHA System: **
images/captcha.php
**

** If you are upgrading from ANY version of RavenNuke(tm) that uses the Resend Email Module: **
modules/Resend_Email/xx.xx - the entire Resend_Email folder/directory
**

** If you are upgrading from RavenNuke(tm) v2.30.00: **
admin.php
modules/Your_Account/xx.xx - the entire Your_Account folder/directory
View user's profile Send private message
Guardian2003
Site Admin


Joined: Aug 28, 2003
Posts: 6373
Location: Vsetin, Czech Republic

PostPosted: Thu Feb 19, 2009 11:58 am Reply with quote Back to top

In other words Wink yes you need to upgrade and do it immediately.
View user's profile Send private message Send e-mail Visit poster's website
selectric
Regular
Regular


Joined: Aug 06, 2008
Posts: 65

PostPosted: Thu Feb 19, 2009 12:02 pm Reply with quote Back to top

Thank you for your response(s). I went ahead and did the fix.

AND TO THOSE WHO WORK ON RAVENNUKE....

THANK YOU!

Because if we didnt have these people fixing up this CMS and offering this community for support...........
View user's profile Send private message
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum