| Quote: |
If you are upgrading from RavenNuke(tm) v2.30.00: **
admin.php
modules/Your_Account/xx.xx - the entire Your_Account folder/directory
**
** We strongly reccomend that you make backups of all of the above mentioned files and just upload/replace them all
REGARDLESS of what version of RavenNuke(tm) you are using. Then of you have issues with the new files please
post in the forums for help. These files offer fixes and/or patches for various security issues.
**
0001349: [Captcha] Full path disclosure and remote detection of local files in captcha.php (KGuske) - resolved.
0001371: [Core - Modules] Sql Injection in "Resend_Email" module (Raven) - resolved.
0001350: [Module - Your Account (RNYA)] Remote Php Code Execution in avatarlist.php (KGuske) - resolved.
0001351: [Module - Your Account (RNYA)] Remote Php Code Execution in Your Account module (KGuske) - resolved.
0001376: [Module - Your Account (RNYA)] XSS Vulnerability in Your_Account (Evaders99) - resolved.
0001358: [Security / Vulnerability] Additional Form validation (Guardian2003) - resolved. |