PHP Web Host - Quality Web Hosting For All PHP Applications $35/month $250/year (Unlimited) - $25/month - 200,000 impressions - Your Ad Could be Here - Click For Details
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
netgoodies
Regular
Regular


Joined: Sep 26, 2005
Posts: 63
Location: Oxfordshire. United Kingdom.

PostPosted: Tue Jan 17, 2006 11:14 am Reply with quote Back to top

Hi Raven

I am running 7.6 with 3.1 patch and had problems with arcade not submitting the scores.

The fix was to delete or comment out the following code in mainfile.php.

Code:
// Posting from other servers in not allowed
// Fix by Quake
// Bug found by PeNdEjO
if ($_SERVER['REQUEST_METHOD'] == "POST") {
  if (isset($_SERVER['HTTP_REFERER'])) {
    if (!stripos_clone($_SERVER['HTTP_REFERER'], $_SERVER['HTTP_HOST'])) {
        die('Posting from another server not allowed!');
    }
  } else {
    die($posttags);
  }
}


I wanted to know if you know its purpose? and does NukeSentinels' referer blocker provide protection if the above code is removed?

Regards

Martyn
View user's profile Send private message Visit poster's website
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 16987
Location: Kansas

PostPosted: Tue Jan 17, 2006 11:46 am Reply with quote Back to top

I have posted this elsewhere but I am happy to repeat it here. That code should never have been added to the Patch Series because it is faulty in its logic and has since been removed from 3.1. You should d/l the 3/1 patched series as it appears you are not using the latest. When Chatserv revises his patches he does not revise the patch level unless he has done major work.

Yes to the NukeSentinel(tm) question.
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
netgoodies
Regular
Regular


Joined: Sep 26, 2005
Posts: 63
Location: Oxfordshire. United Kingdom.

PostPosted: Tue Jan 17, 2006 12:15 pm Reply with quote Back to top

Hi Raven

Quote:
I have posted this elsewhere but I am happy to repeat it here.


I am so sorry about that, I did do a search on the matter and didn't find anything. Obviously I didn't try hard enough, so thanks for the reply as I do know how irritating it is to repeat the same replies over and over again. worship Raven.

Thanks to you I will check my latest patches and update them and I am not suprised that NukeSentinel did the job anyway (as well as many others).

Keep up the good work mate.

Regards

Martyn.
View user's profile Send private message Visit poster's website
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 16987
Location: Kansas

PostPosted: Tue Jan 17, 2006 12:20 pm Reply with quote Back to top

I did not mean that as a slam. In this case I meant I have posted it at other sites too, as well as explaining to Chat why it needed to be removed Wink
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
netgoodies
Regular
Regular


Joined: Sep 26, 2005
Posts: 63
Location: Oxfordshire. United Kingdom.

PostPosted: Tue Jan 17, 2006 4:58 pm Reply with quote Back to top

Hi Raven

Quote:
I did not mean that as a slam.
I didn't take it that way mate, just as a grumble which I ignored anyway ROTFL

Whilst I am here can I remind you of this thread.

Code:
http://ravenphpscripts.com/postt7542.html


Was wondering if there is any feedback? If so post it there to keep things tidy eh! its OffTopic ROTFL

Regards

Martyn.
View user's profile Send private message Visit poster's website
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum