July 31 2010 17:10:12
Navigation
Users Online
· Guests Online: 22

· Members Online: 0

· Total Members: 35,722
· Newest Member: siliesse
IRC Channel
Got an IRC Client?
Join our new IRC channel at

irc.freenode.com/phpfusion

Free IRC Clients: Wikipedia
Support Sites
Last Seen Users
· Falcon00:09:16
· johnmonroe00:19:49
· kamfengeren00:23:37
· siliesse00:24:42
· bartek12400:37:18
· Fangree_Craig00:45:49
· Joci196800:48:55
· gittedl00:51:08
· Barspin01:03:42
· MerlinSt01:15:20
Donate
Low level XSS Fix (v6.01.11)
SecurityUpdated 15 July 2007: The update mentioned below caused the lost password function to fail. This has now been corrected, the fixed lostpassword.php can be found in the 6.01.11 upgrade package.

Original news:
A secunia advisory has brought to my attention an XSS in the FUSION_QUERY string. In order to fix this I have opted to use some v7 code. All users are strongly encouraged to keep their setups as up-to-date as possible, stop slacking! (Joke).

Existing v6.01.10 users can download the file '6.01.11 Update for v6.01.10 and simply upload the inluded files and click upgrade under System Admin. The full sourceforge package has also been updated. Manual updaters can find the fix details in the CVS.

PHP-Fusion 6.01.11 Update FOR V6.01.10 ONLY (6Kb).
PHP-Fusion 6.01.11 (2.04Mb).
Ratings
Rating is available to Members only.

Please login or register to vote.

Awesome! Awesome! 100% [1 Vote]
Very Good Very Good 0% [No Votes]
Good Good 0% [No Votes]
Average Average 0% [No Votes]
Poor Poor 0% [No Votes]
Login
Username

Password



Not a member yet?
Click here to register.

Forgotten your password?
Request a new one here.
Member Poll
Which PHP version are you using?











You must login to vote.
RSS Feeds
- PHP-Fusion News
- SF File Releases
- SF News Releases
Shoutbox
You must login to post a message.

31 Jul 2010 15:47:15
Hey Polarfox, look here. http://www.fangre.
../index.php

31 Jul 2010 15:34:55
Where I can find the list of differences of 7.00 and 7.01?

31 Jul 2010 15:18:16
What's the news? Is 7.01 getting released tomorrow?

31 Jul 2010 11:53:26
heelo everyone

31 Jul 2010 05:04:21
I agree

30 Jul 2010 19:08:21
It's better to just stay .co.uk all the time now, it looks great. Wink

30 Jul 2010 19:04:27
Because we do not know when we can fix the problems with phpfusion-mods.com
.

30 Jul 2010 18:48:40
Hello! Pfft

30 Jul 2010 16:14:37
Really why's that? It's better to be on the .co.uk domain anyway. Shock

30 Jul 2010 16:09:48
No, the news has been edited, mods is up and running as a subdomain of php-fusion.co.uk

Render time: 0.17 seconds 70,452,152 unique visits