July 31 2010 17:14:20
Navigation
Users Online
· Guests Online: 15

· Members Online: 1
charlesmckay

· Total Members: 35,723
· Newest Member: watchufconvers
IRC Channel
Got an IRC Client?
Join our new IRC channel at

irc.freenode.com/phpfusion

Free IRC Clients: Wikipedia
Support Sites
Last Seen Users
· charlesmckayOnline
· Falcon< 5 mins
· johnmonroe00:23:58
· kamfengeren00:27:46
· siliesse00:28:51
· bartek12400:41:27
· Fangree_Craig00:49:58
· Joci196800:53:04
· gittedl00:55:17
· Barspin01:07:51
Donate
Secondary XSS fixes (6.01.8)
PHP-FusionSome of you may have noticed yesterday in the shoutbox that a new exploit had been discovered. I am pleased to say that these issues have now been corrected and the patch is now available for download. The files affected include forum/postify.php and forum/viewthread.php. For details of the exact updates please refer to the CVS. Credit: BloodKiller.

Existing v6.01.6 and 6.01.7 users can download the file '6.01.8 Update for v6.01.6/7 and simply upload the included files and click upgrade under System Admin. The full sourceforge package has been updated.

PHP-Fusion 6.01.8 Update FOR V6.01.6 and 6.01.7 ONLY (6Kb).
PHP-Fusion 6.01.8 (2.04Mb).

While I am on this issue, I would like to say that while I appreciate users reporting discovered exploits I do not appreciate being held to ransom, I will co-operate with anyone who operates in the correct manner, however, the behaviour of certain individuals in the last few weeks is nothing short of unacceptable. I do not wish to name any names but I will say that anyone who acts maliciously against this community in the future will be banned for life, no second chances. I am sick and tired of people thinking they can take me and this community for a ride. It ends here and now. That's all I have to say. Thank you.
Ratings
Rating is available to Members only.

Please login or register to vote.

Awesome! Awesome! 100% [5 Votes]
Very Good Very Good 0% [No Votes]
Good Good 0% [No Votes]
Average Average 0% [No Votes]
Poor Poor 0% [No Votes]
Login
Username

Password



Not a member yet?
Click here to register.

Forgotten your password?
Request a new one here.
Member Poll
Which PHP version are you using?











You must login to vote.
RSS Feeds
- PHP-Fusion News
- SF File Releases
- SF News Releases
Shoutbox
You must login to post a message.

31 Jul 2010 15:47:15
Hey Polarfox, look here. http://www.fangre.
../index.php

31 Jul 2010 15:34:55
Where I can find the list of differences of 7.00 and 7.01?

31 Jul 2010 15:18:16
What's the news? Is 7.01 getting released tomorrow?

31 Jul 2010 11:53:26
heelo everyone

31 Jul 2010 05:04:21
I agree

30 Jul 2010 19:08:21
It's better to just stay .co.uk all the time now, it looks great. Wink

30 Jul 2010 19:04:27
Because we do not know when we can fix the problems with phpfusion-mods.com
.

30 Jul 2010 18:48:40
Hello! Pfft

30 Jul 2010 16:14:37
Really why's that? It's better to be on the .co.uk domain anyway. Shock

30 Jul 2010 16:09:48
No, the news has been edited, mods is up and running as a subdomain of php-fusion.co.uk

Render time: 0.04 seconds 70,452,399 unique visits