Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Security Issues
Author Message
rickleigh
Worker
Worker



Joined: Jan 06, 2009
Posts: 183

PostPosted: Wed Feb 18, 2009 6:44 pm Reply with quote

Should we check any certain Dir. or database to make sure we haven't been a victim yet? Right now I'm not seeing any changes but, I didn't know if there is any back doors I should be looking for.

Also I didn't see you mention what the hole was that was found.

Thanks
 
View user's profile Send private message
rickleigh







PostPosted: Wed Feb 18, 2009 6:47 pm Reply with quote

Raven I didnt no if you noticed. but, the posting dates are showing the 19th and as far as I know its the 18th. I've had a long day so maybe I missed a day some where Wink
 
Guardian2003
Site Admin



Joined: Aug 28, 2003
Posts: 6799
Location: Ha Noi, Viet Nam

PostPosted: Wed Feb 18, 2009 6:55 pm Reply with quote

rickleigh wrote:
Raven I didnt no if you noticed. but, the posting dates are showing the 19th and as far as I know its the 18th. I've had a long day so maybe I missed a day some where Wink

There could be a difference between the server time and your 'local' time Wink
 
View user's profile Send private message Send e-mail
rickleigh







PostPosted: Wed Feb 18, 2009 7:14 pm Reply with quote

Guardian2003,

Thanks I checked my profile and it was set different then what my area is. Not sure why, as I thought I set this up once. No harm done Smile
 
selectric
Regular
Regular



Joined: Aug 06, 2008
Posts: 65

PostPosted: Thu Feb 19, 2009 11:28 am Reply with quote

Hello, I read the major warning on ravennuke.com, and here... Can someone with authority please tell me if rn2.20.01 is vulnerable to this issue and requires the fix? OR is this just for the newer version? THANK YOU!
 
View user's profile Send private message
spasticdonkey
RavenNuke(tm) Development Team



Joined: Dec 02, 2006
Posts: 1693
Location: Texas, USA

PostPosted: Thu Feb 19, 2009 11:36 am Reply with quote

Well I dont have any authority Smile - however here's a bit from the security changelog

RavenNuke(tm) v2.30.01 - Security Specific Change Log wrote:
To ensure your site is patched/secured in the shortest possible time, please upload/replace the following immediately!

** If you are upgrading from ANY version of RavenNuke(tm) that uses the CAPTCHA System: **
images/captcha.php
**

** If you are upgrading from ANY version of RavenNuke(tm) that uses the Resend Email Module: **
modules/Resend_Email/xx.xx - the entire Resend_Email folder/directory
**

** If you are upgrading from RavenNuke(tm) v2.30.00: **
admin.php
modules/Your_Account/xx.xx - the entire Your_Account folder/directory
 
View user's profile Send private message Visit poster's website
Guardian2003







PostPosted: Thu Feb 19, 2009 11:58 am Reply with quote

In other words Wink yes you need to upgrade and do it immediately.
 
selectric







PostPosted: Thu Feb 19, 2009 12:02 pm Reply with quote

Thank you for your response(s). I went ahead and did the fix.

AND TO THOSE WHO WORK ON RAVENNUKE....

THANK YOU!

Because if we didnt have these people fixing up this CMS and offering this community for support...........
 
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Security Issues

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©