Previous Thread
Next Thread
Print Thread
Rate Thread
Joined: Nov 2001
Posts: 10,369
I type Like navaho
I type Like navaho
Joined: Nov 2001
Posts: 10,369
UBB.threads 6.2.3 has been released to the Member Area.

UBB.threads™ 6.2.3 fixes a potential security flaw that was spotted by one of our users.

There are only 2 files changed from version 6.2.2

ubbt.inc.php
admin/editconfig.php

Upload these 2 files, log into your admin area, click the "Edit config settings" link, click the update button and that's it, you're done .

Official announcement here.

Sponsored Links
Joined: Oct 2002
Posts: 165
Member
Member
Offline
Joined: Oct 2002
Posts: 165
Any news on how this effects those still on 6.2?

Joined: Nov 2001
Posts: 10,369
I type Like navaho
I type Like navaho
Joined: Nov 2001
Posts: 10,369
ubbt.inc.php has been updated in each upgrade since 6.2.

Not sure if it'll cause or fix problems if you replaced that file. That's really the only changed file. But you could try replacing that file if you don't have time for the full upgrade path.

Joined: Jan 2002
Posts: 674
Junior Member
Junior Member
Offline
Joined: Jan 2002
Posts: 674
Wow that was a easy one... I used beyond compare and it only had one line to change in each file. Thank god I didn't have to rehack all the mods

Joined: Jan 2003
Posts: 125
Journeyman
Journeyman
Joined: Jan 2003
Posts: 125
any details on the secruity flaw, or is that being kept private so the script kiddies dont' run wild?

Sponsored Links
Joined: Nov 2001
Posts: 10,369
I type Like navaho
I type Like navaho
Joined: Nov 2001
Posts: 10,369
Yeah, I didn't think it was wise to publish the details..... as infopop didn't.

Some people run outdated copies, and probably not a good idea to show open doors.

Joined: Apr 2002
Posts: 1,768
Addict
Addict
Offline
Joined: Apr 2002
Posts: 1,768
But if you don't upgrade your site to 6.2.3, one of us may use the exploit to hack you.

Joined: Nov 2001
Posts: 10,369
I type Like navaho
I type Like navaho
Joined: Nov 2001
Posts: 10,369
he he he
Yes, the power we have.

Joined: Feb 2002
Posts: 950
Hacker
Hacker
Offline
Joined: Feb 2002
Posts: 950
Man, I can almost change my underwear on this schedule of new releases. :lol:

Joined: Aug 2002
Posts: 218
Member
Member
Offline
Joined: Aug 2002
Posts: 218
This update is easy but I don't know how I should handle the update to 6.3 with all the hacks I installed.

If there are guys working on the beta test it would be nice to check out which hacks are also working with 6.3 and which not. Rick has made some major changes and this will make updates hard!

Sponsored Links
Joined: Sep 2001
Posts: 129
Member
Member
Offline
Joined: Sep 2001
Posts: 129
is this only a problem is your using sessions ? as i am not.


Regards
Clint

Running on WIN2003 Web Server.

Paranoid people get followed too!
Joined: Nov 2001
Posts: 10,369
I type Like navaho
I type Like navaho
Joined: Nov 2001
Posts: 10,369
No.. you should upgrade regardless if you are using cookies or sessions.


Link Copied to Clipboard
Donate Today!
Donate via PayPal

Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.

Please also see our parent organization VNC Web Services if you're in the need of a new UBB.threads Install or Upgrade, Site/Server Migrations, or Security and Coding Services.
Recommended Hosts
We have personally worked with and recommend the following Web Hosts:
Stable Host
bluehost
InterServer
Visit us on Facebook
Member Spotlight
isaac
isaac
California
Posts: 1,157
Joined: July 2001
Forum Statistics
Forums63
Topics37,573
Posts293,925
Members13,849
Most Online5,166
Sep 15th, 2019
Today's Statistics
Currently Online
Topics Created
Posts Made
Users Online
Birthdays
Top Posters
AllenAyres 21,079
JoshPet 10,369
LK 7,394
Lord Dexter 6,708
Gizmo 5,833
Greg Hard 4,625
Top Posters(30 Days)
Top Likes Received
isaac 82
Gizmo 20
Brett 7
WebGuy 2
Morgan 2
Top Likes Received (30 Days)
None yet
The UBB.Developers Network (UBB.Dev/Threads.Dev) is ©2000-2024 VNC Web Services

 
Powered by UBB.threads™ PHP Forum Software 8.0.0
(Preview build 20221218)