Web Wiz - Green Windows Web Hosting

  New Posts New Posts RSS Feed - Web Wiz Forums v7.8 - security update
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

Web Wiz Forums v7.8 - security update

 Post Reply Post Reply Page  <12345>
Author
WebWiz-Bruce View Drop Down
Admin Group
Admin Group
Avatar
Web Wiz Developer

Joined: 03 September 2001
Location: Bournemouth
Status: Offline
Points: 9844
Post Options Post Options   Thanks (0) Thanks(0)   Quote WebWiz-Bruce Quote  Post ReplyReply Direct Link To This Post Posted: 04 May 2004 at 5:44am
It's held in the common.asp file.
Back to Top
ask023 View Drop Down
Groupie
Groupie


Joined: 16 February 2003
Status: Offline
Points: 130
Post Options Post Options   Thanks (0) Thanks(0)   Quote ask023 Quote  Post ReplyReply Direct Link To This Post Posted: 06 May 2004 at 9:26am

Dear Bruce,

I understand that you should not discoluse security bug details...
Could you please just describe the potential risks to use unpatched forum? Like users DB download; any files on local disks erasing; remote executing, etc?

Thank you in advance,
Best wishes,
Sergey

Back to Top
WebWiz-Bruce View Drop Down
Admin Group
Admin Group
Avatar
Web Wiz Developer

Joined: 03 September 2001
Location: Bournemouth
Status: Offline
Points: 9844
Post Options Post Options   Thanks (0) Thanks(0)   Quote WebWiz-Bruce Quote  Post ReplyReply Direct Link To This Post Posted: 07 May 2004 at 3:16am
Sensitive data can be retrieved from the database and used by a hacker to gain access to your forum including the admin account.


Also. If you are using the Access version then unless you have followed the install instructions to secure your access database then it can be downloaded and your forum comprimised.

If using Access you should always follow the install intructions on the following page to secure your forum!!!:-

http://www.webwiz.net/web_wiz_forums/docs_access_move_ db.asp?mode=forum


Edited by -boRg-
Back to Top
seabuggz View Drop Down
Newbie
Newbie


Joined: 09 May 2004
Location: Belgium
Status: Offline
Points: 4
Post Options Post Options   Thanks (0) Thanks(0)   Quote seabuggz Quote  Post ReplyReply Direct Link To This Post Posted: 09 May 2004 at 12:07pm

Just so you know, and this is a minor detail I know: after uploading the patch files (7.7a to 7.8) the "Powered by ... version 7.7a" doesn't change to " ... version 7.8".

Other than that: haven't had any problems worth mentioning here. Great stuff!!!

Back to Top
WebWiz-Bruce View Drop Down
Admin Group
Admin Group
Avatar
Web Wiz Developer

Joined: 03 September 2001
Location: Bournemouth
Status: Offline
Points: 9844
Post Options Post Options   Thanks (0) Thanks(0)   Quote WebWiz-Bruce Quote  Post ReplyReply Direct Link To This Post Posted: 09 May 2004 at 12:56pm
The version number is held in the common.asp files, you need to replace these files to update the version number.
Back to Top
SKY2nd View Drop Down
Newbie
Newbie


Joined: 05 October 2003
Location: United States
Status: Offline
Points: 6
Post Options Post Options   Thanks (0) Thanks(0)   Quote SKY2nd Quote  Post ReplyReply Direct Link To This Post Posted: 09 May 2004 at 2:53pm
Thanks -borg-, update patch worked with out a hitch.

Also you might to let them know that there are 2 common.asp files. one is also in the admin folder. Other updates I have gotten I couldn't tell which file in which folder so I would just download the whole program and update that with my personal changes. 
Back to Top
Matt270581 View Drop Down
Newbie
Newbie


Joined: 06 August 2003
Location: Australia
Status: Offline
Points: 13
Post Options Post Options   Thanks (0) Thanks(0)   Quote Matt270581 Quote  Post ReplyReply Direct Link To This Post Posted: 11 May 2004 at 4:05am

Thanks -borg-.

No probs with the patch from 7.7a to 7.8.

Keep up the good work.

Back to Top
GoodLook View Drop Down
Newbie
Newbie


Joined: 11 May 2004
Location: Belgium
Status: Offline
Points: 7
Post Options Post Options   Thanks (0) Thanks(0)   Quote GoodLook Quote  Post ReplyReply Direct Link To This Post Posted: 11 May 2004 at 5:16am

Same here, i'm planning to translate 7.8 to Dutch(nederlands)
are there normally big changes in the vars ?
or can I translate and get informed about the new or changed vars ?

Originally posted by henrikn henrikn wrote:

Thx

I have almost finished the danish language file - could you inform me of the changes in the code so I don't have to start aal editing over again?

henrikn

Back to Top
 Post Reply Post Reply Page  <12345>

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.08
Copyright ©2001-2026 Web Wiz Ltd.


Become a Fan on Facebook Follow us on X Connect with us on LinkedIn Web Wiz Blogs
About Web Wiz | Contact Web Wiz | Terms & Conditions | Cookies | Privacy Notice

Web Wiz is the trading name of Web Wiz Ltd. Company registration No. 05977755. Registered in England and Wales.
Registered office: Web Wiz Ltd, Unit 18, The Glenmore Centre, Fancy Road, Poole, Dorset, BH12 4FB, UK.

Prices exclude VAT at 20% unless otherwise stated. VAT No. GB988999105 - $, € prices shown as a guideline only.

Copyright ©2001-2026 Web Wiz Ltd. All rights reserved.