|
Joined: Nov 2001
Posts: 10,369
I type Like navaho
|
I type Like navaho
Joined: Nov 2001
Posts: 10,369 |
UBB.threads 6.2.3 has been released to the Member Area.UBB.threads™ 6.2.3 fixes a potential security flaw that was spotted by one of our users. There are only 2 files changed from version 6.2.2 ubbt.inc.php admin/editconfig.php Upload these 2 files, log into your admin area, click the "Edit config settings" link, click the update button and that's it, you're done .  Official announcement here.
|
|
|
|
Joined: Oct 2002
Posts: 165
Member
|
Member
Joined: Oct 2002
Posts: 165 |
Any news on how this effects those still on 6.2?
|
|
|
|
Joined: Nov 2001
Posts: 10,369
I type Like navaho
|
I type Like navaho
Joined: Nov 2001
Posts: 10,369 |
ubbt.inc.php has been updated in each upgrade since 6.2. Not sure if it'll cause or fix problems if you replaced that file. That's really the only changed file. But you could try replacing that file if you don't have time for the full upgrade path. 
|
|
|
|
Joined: Jan 2002
Posts: 674
Junior Member
|
Junior Member
Joined: Jan 2002
Posts: 674 |
Wow that was a easy one... I used beyond compare and it only had one line to change in each file.  Thank god I didn't have to rehack all the mods 
|
|
|
|
Joined: Jan 2003
Posts: 125
Journeyman
|
Journeyman
Joined: Jan 2003
Posts: 125 |
any details on the secruity flaw, or is that being kept private so the script kiddies dont' run wild?
|
|
|
|
Joined: Nov 2001
Posts: 10,369
I type Like navaho
|
I type Like navaho
Joined: Nov 2001
Posts: 10,369 |
Yeah, I didn't think it was wise to publish the details..... as infopop didn't.  Some people run outdated copies, and probably not a good idea to show open doors. 
|
|
|
|
Joined: Apr 2002
Posts: 1,768
Addict
|
Addict
Joined: Apr 2002
Posts: 1,768 |
But if you don't upgrade your site to 6.2.3, one of us may use the exploit to hack you. 
|
|
|
|
Joined: Nov 2001
Posts: 10,369
I type Like navaho
|
I type Like navaho
Joined: Nov 2001
Posts: 10,369 |
he he he Yes, the power we have. 
|
|
|
|
Joined: Feb 2002
Posts: 950
Hacker
|
Hacker
Joined: Feb 2002
Posts: 950 |
Man, I can almost change my underwear on this schedule of new releases. :lol:
|
|
|
|
Joined: Aug 2002
Posts: 218
Member
|
Member
Joined: Aug 2002
Posts: 218 |
This update is easy but I don't know how I should handle the update to 6.3 with all the hacks I installed.
If there are guys working on the beta test it would be nice to check out which hacks are also working with 6.3 and which not. Rick has made some major changes and this will make updates hard!
|
|
|
|
Joined: Sep 2001
Posts: 129
Member
|
Member
Joined: Sep 2001
Posts: 129 |
is this only a problem is your using sessions ? as i am not.
Regards Clint
Running on WIN2003 Web Server.
Paranoid people get followed too!
|
|
|
|
Joined: Nov 2001
Posts: 10,369
I type Like navaho
|
I type Like navaho
Joined: Nov 2001
Posts: 10,369 |
No.. you should upgrade regardless if you are using cookies or sessions. 
|
|
|
Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.
Please also see our parent organization VNC Web Services if you're in the need of a new UBB.threads Install or Upgrade, Site/Server Migrations, or Security and Coding Services.
|
|
Posts: 1,157
Joined: July 2001
|
|
Forums63
Topics37,575
Posts293,930
Members13,823
|
Most Online6,139 Sep 21st, 2024
|
|
Currently Online
Topics Created
Posts Made
Users Online
Birthdays
|
|
|
|