July 31 2010 17:19:50
Navigation
Users Online
· Guests Online: 22

· Members Online: 1
geoffgreenback

· Total Members: 35,725
· Newest Member: geoffgreenback
IRC Channel
Got an IRC Client?
Join our new IRC channel at

irc.freenode.com/phpfusion

Free IRC Clients: Wikipedia
Support Sites
Last Seen Users
· geoffgreenbackOnline
· charlesmckay< 5 mins
· Falcon00:08:58
· johnmonroe00:29:28
· kamfengeren00:33:16
· siliesse00:34:21
· bartek12400:46:57
· Fangree_Craig00:55:28
· Joci196800:58:34
· gittedl01:00:47
Donate
Couple of minor fixes
Bugs and ErrorsThis morning I received information about an XSS exploit in the shoutbox. A user can plant malicious code via the shout_name field. Knowing my code, I immediatey knew the same trick can be done in comments. Two fixes then which are comments_include.php and shoutbox_panel.php. Existing v6.00.303 users can download the file '6.00.304 update for v6.00.303'. Simply upload the inluded files and click upgrade under System Admin. The Sourceforge packages have also been updated as usual. Thanks to Ruyn for the heads up :)

Feb 11 2006 @ 19:30 Update I've been informed of a weakness in the $srch_text variable in messages.php. I've added the updated file to the 304 patch and have updated the Sourceforge packages. Thanks to system_meltdown for letting me know.

Download PHP-Fusion 6.00.304 Update for v6.00.303 (5Kb).
Ratings
Rating is available to Members only.

Please login or register to vote.

Awesome! Awesome! 100% [1 Vote]
Very Good Very Good 0% [No Votes]
Good Good 0% [No Votes]
Average Average 0% [No Votes]
Poor Poor 0% [No Votes]
Login
Username

Password



Not a member yet?
Click here to register.

Forgotten your password?
Request a new one here.
Member Poll
Which PHP version are you using?











You must login to vote.
RSS Feeds
- PHP-Fusion News
- SF File Releases
- SF News Releases
Shoutbox
You must login to post a message.

31 Jul 2010 15:47:15
Hey Polarfox, look here. http://www.fangre.
../index.php

31 Jul 2010 15:34:55
Where I can find the list of differences of 7.00 and 7.01?

31 Jul 2010 15:18:16
What's the news? Is 7.01 getting released tomorrow?

31 Jul 2010 11:53:26
heelo everyone

31 Jul 2010 05:04:21
I agree

30 Jul 2010 19:08:21
It's better to just stay .co.uk all the time now, it looks great. Wink

30 Jul 2010 19:04:27
Because we do not know when we can fix the problems with phpfusion-mods.com
.

30 Jul 2010 18:48:40
Hello! Pfft

30 Jul 2010 16:14:37
Really why's that? It's better to be on the .co.uk domain anyway. Shock

30 Jul 2010 16:09:48
No, the news has been edited, mods is up and running as a subdomain of php-fusion.co.uk

Render time: 0.05 seconds 70,452,745 unique visits