Site, Server Genel » IPB Destek

Ip.board 2.2.x Ve 2.3.x Güvenlik Açığı

http://forum.whmdestek.com/

Go Back   WHM/cPanel Support Platform » Türkçe » Site, Sunucu Sorunlarınız ve Çözümleri » Site, Server Genel » IPB Destek
 


Reply
 
LinkBack Thread Tools Display Modes
  #1  
Old 10.09.08, 00:28
WoLeRiNe's Avatar
SDÜ Bilg. Programcılığı
 
Join Date: Jun 2007
Location: Istanbul - Isparta
Age: 19
Posts: 115
Rep Power: 2
WoLeRiNe is on a distinguished road
Send a message via MSN to WoLeRiNe Send a message via Yahoo to WoLeRiNe Send a message via Skype™ to WoLeRiNe
Exclamation Ip.board 2.2.x Ve 2.3.x Güvenlik Açığı

Resmi açıklama
Quote:
IP.Board 2.2.x and 2.3.x Security Patch

We have released a single-file security patch which impacts IP.Board 2.2.x and 2.3.x versions. This is a critical update. Please apply the patch as soon as possible or contact our technical support via the client area if you need assistance.

Issue

It is possible to perform a remote SQL exploit and inject SQL code in an existing IPB query
IPB 2.2.x ve 2.3.x sürümlerinde önemli bir açık bulundu.
Açığı kapatmak için

sources/action_public/xmlout.php dosyasını açın
Code:
'where'  => "{$check_field}='{$name}'",
satırını
Code:
'where'  => "{$check_field}='". $this->ipsclass->DB->add_slashes( $name ) . "'",
olarak değiştirin.

Knight Online > Ip.board 2.2.x Ve 2.3.x Güvenlik Açığı
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Reply

« - | - »

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
Güvenlik ? Crime Site, Server Genel 2 28.07.08 14:14
güvenlik sorun karamaske2911 Güvenlik Makaleler 1 08.04.08 02:22
Mysql açığı Fetihcan WHM Soru ve Cevaplar 5 10.03.08 16:05
Open DNS servers açığı Ptah Genel Soru ve Cevaplar 0 19.09.07 07:24
mySQL MaxDB WebDBM açığı tespara DB Makaleler 0 25.06.07 21:59


Sign up for PayPal and start accepting credit card payments instantly.

Navigasyon
Menü