<?xml version="1.0" encoding="utf-8" ?>
<?xml-stylesheet type="text/xsl" href="RSS_xslt_style.asp" version="1.0" ?>
<rss version="2.0" xmlns:WebWizForums="https://syndication.webwiz.net/rss_namespace/">
 <channel>
  <title>Web Wiz Support and Community Forums : Security bug found and fixed in v7.95!</title>
  <link>https://forums.webwiz.net/</link>
  <description><![CDATA[This is an XML content feed of; Web Wiz Support and Community Forums : Web Wiz Forums : Security bug found and fixed in v7.95!]]></description>
  <copyright>Copyright (c) 2006-2013 Web Wiz Forums - All Rights Reserved.</copyright>
  <pubDate>Sat, 18 Apr 2026 12:36:50 +0000</pubDate>
  <lastBuildDate>Fri, 04 Nov 2005 12:56:36 +0000</lastBuildDate>
  <docs>http://blogs.law.harvard.edu/tech/rss</docs>
  <generator>Web Wiz Forums 12.08</generator>
  <ttl>360</ttl>
  <WebWizForums:feedURL>https://forums.webwiz.net/RSS_post_feed.asp?TID=17104</WebWizForums:feedURL>
  <image>
   <title><![CDATA[Web Wiz Support and Community Forums]]></title>
   <url>https://forums.webwiz.net/forum_images/web_wiz_forums.png</url>
   <link>https://forums.webwiz.net/</link>
  </image>
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : Thanks MadDog for the catch!...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93284.html#93284</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=19649">JJLatWebWiz</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 04&nbsp;November&nbsp;2005 at 12:56pm<br /><br />Thanks MadDog for the catch! <img src="https://forums.webwiz.net/smileys/smiley20.gif" align="middle" border="0">  Now I'll have to look through my raw server logs to see if anyone has been exploiting this.<br /><br />By the way, why do you use the var "<font face="Courier New, Courier, mono"><font size="1">strDBTableTopics</font></font>" instead of "<font face="Courier New, Courier, mono"><font size="1">strDbTable & "Topic"</font></font>".  That var is probably why stonecutter got that error.]]>
   </description>
   <pubDate>Fri, 04 Nov 2005 12:56:36 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93284.html#93284</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! :  there is a version history saying...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93276.html#93276</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=2216">dj air</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 04&nbsp;November&nbsp;2005 at 8:14am<br /><br />there is a version history saying about the files that where edited.<br><br><br>&lt;--- edit --&gt;<br><br>http://www.webwiz.net/web_wiz_forums/Version%20History.txt <br><br>it was 2 files forum_posts.asp and active topics.asp<br><span style="font-size:10px"><br /><br />Edited by dj air - 04&nbsp;November&nbsp;2005 at 8:18am</span>]]>
   </description>
   <pubDate>Fri, 04 Nov 2005 08:14:12 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93276.html#93276</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : not again  is there a version...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93274.html#93274</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=20191">Ali Bilgrami</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 04&nbsp;November&nbsp;2005 at 8:05am<br /><br />not again <IMG height=17 alt=Cry src="http://forums.webwiz.net/smileys/smiley19.gif" width=17 align=absMiddle border="0">&nbsp;<DIV>is there a version history available or say in which files&nbsp;should i cut / paste or edit the code <IMG height=17 alt="Big smile" src="http://forums.webwiz.net/smileys/smiley4.gif" width=17 align=absMiddle border="0">&nbsp;</DIV>]]>
   </description>
   <pubDate>Fri, 04 Nov 2005 08:05:26 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93274.html#93274</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : A fix for this and some of bugs...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93265.html#93265</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=1">WebWiz-Bruce</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 04&nbsp;November&nbsp;2005 at 3:45am<br /><br />A fix for this and some of bugs in 7.95 was released 2 days ago.<br><br>Just download the latest version 7.96<br>]]>
   </description>
   <pubDate>Fri, 04 Nov 2005 03:45:05 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93265.html#93265</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : I applied the fix and received...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93263.html#93263</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=16531">stonecutter</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 03&nbsp;November&nbsp;2005 at 11:53pm<br /><br />I applied the fix and received a VB Script Runtime error when trying toaccess a password restricted forum. I copied back the original file.Thanks for your efforts but for some reason it didn't work on my system.]]>
   </description>
   <pubDate>Thu, 03 Nov 2005 23:53:49 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93263.html#93263</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : no problem as i went through the...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93122.html#93122</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=20191">Ali Bilgrami</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 01&nbsp;November&nbsp;2005 at 5:20pm<br /><br />no problem as i went through the updated file..i got some idea abt it...<IMG height=17 alt="Big smile" src="http://forums.webwiz.net/smileys/smiley4.gif" width=17 align=absMiddle border="0"><DIV>lets see what -boRg- comes up with...and thanks for the fix :)</DIV>]]>
   </description>
   <pubDate>Tue, 01 Nov 2005 17:20:13 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93122.html#93122</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : Sorry but im not going to actually...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93119.html#93119</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=1070">MadDog</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 01&nbsp;November&nbsp;2005 at 5:01pm<br /><br />Sorry but im not going to actually show the code that i changed due to security reasons. For now im not going to say.]]>
   </description>
   <pubDate>Tue, 01 Nov 2005 17:01:36 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93119.html#93119</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : can you tell me where to change...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93118.html#93118</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=20191">Ali Bilgrami</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 01&nbsp;November&nbsp;2005 at 4:55pm<br /><br />can you tell me where to change forum_posts.asp??? i have some modifications done on that file. pointin out the code will be a help, if for security reasons u cant do it then kindly pm me <IMG height=17 alt=Smile src="http://forums.webwiz.net/smileys/smiley1.gif" width=17 align=absMiddle border="0">]]>
   </description>
   <pubDate>Tue, 01 Nov 2005 16:55:34 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93118.html#93118</guid>
  </item> 
  <item>
   <title><![CDATA[Security bug found and fixed in v7.95! : I found a bug today in forum_posts.asp...]]></title>
   <link>https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93115.html#93115</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=1070">MadDog</a><br /><strong>Subject:</strong> 17104<br /><strong>Posted:</strong> 01&nbsp;November&nbsp;2005 at 3:39pm<br /><br />I found a bug today in forum_posts.asp that allows any visitor to view any topic regardless of topic and forum permissions.<br /><br />Download the zip below and replace forum_posts.asp with the one in your forum.<br /><br />I reported this bug to -boRg- so hopefully he will provide offical patch soon, but for the mean time im posting this.<br /><br /><a target="_blank" href="uploads/MadDog/2005-11-01_153828_forum_posts.zip" target="_blank">Download Fix Here</a>]]>
   </description>
   <pubDate>Tue, 01 Nov 2005 15:39:06 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/security-bug-found-and-fixed-in-v7-95_topic17104_post93115.html#93115</guid>
  </item> 
 </channel>
</rss>