PHP Web Host - Quality Web Hosting For All PHP Applications Clan Themes! We make clans look good!!
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
southern
Client


Joined: Jan 29, 2004
Posts: 579
Location: Texas

PostPosted: Sun Jul 18, 2004 4:49 pm Reply with quote Back to top

I noticed that a number- every one I've checked- of my inactive blocks show this:
Code:

Block Activation
An RSS block
This is the preview for Block Security Tracker
Security Tracker
 
·PHP strip_tags() Can Be Bypassed By Remote Users With Tags Containing 

Do you want to Activate this block?
[ No | Yes ]



This is the preview for Block Collapsing Forums
Collapsing Forums 

·PHP strip_tags() Can Be Bypassed By Remote Users With Tags Containing 

Do you want to Activate this block?
[ No | Yes ]
 
 
 
This is the preview for Block Sentinel (tm)
Sentinel (tm)
 
·PHP strip_tags() Can Be Bypassed By Remote Users With Tags Containing 

Do you want to Activate this block?
[ No | Yes ]

when I click on Activate in my admin area. Of course I don't want that showing on my site so they remain inactive. I first noticed it a few days ago- the Security Tracker RSS feed warned about the strip tags() thingie- and it showed in a few blocks I had active. The line seems to be present in all of my inactive blocks both standard and addon, but how could an RSS feed leak into unrelated blocks? The block-Sentinel(tm) btw has nothing to do with Sentinel(tm), it is only an image block I was playing with. This is a strange issue, and annoying since I can't activate the affected blocks. What I've done to remedy it is to upload chatserv's patched blocks and overwrite the affected ones, but some blocks I'll have to re-download...
View user's profile Send private message Visit poster's website
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum