The AnimeFanlistings Network Message Board

PHPfanbase security fix

Mura · 9 · 1730

Offline Mura

  • TAFL Staff Alumni
  • *
    • Posts: 0
  • Shiny things. =D
    • View Profile
    • http://fan.gekidasa.net
There's a new security fix available for users of PHPfanbase. See the post at TFL and the announcement at CodeGrrl for more information. :/

EDIT:
This fixes issues that had not been found (and therefore were not dealt with) in the fix that was posted late last year.
« Last Edit: May 01, 2006, 11:39:48 PM by Mura »
[color=\"#FFCC00\"]☆ [color=\"#993399\"]Mura[/color] ☆[/color] [color=\"#993399\"]

aka Boobitari Perestroika Homuncula sensei/Ebil Wonder Twin Jayna

(メ¬_¬) --> (.~_^)/☆ OTP!!



FLs | LJ | Plug: [url=\"http://fuuma.


Offline Syaokura

  • Newbie
  • *
    • Posts: 0
  • Web designing, graphic designing
    • View Profile
    • http://sac.moonation.org
The join forms have been acting wonky as of late. Thanks to the security fix, they're working again.

Thanks for posting this, Mura! :/
"What? Can't shoot? You're up against a student. Or have you finally learned that only those willing to be shot can themselves shoot others?"

- Lelouch Lamperouge (Code Geass)



Ouka avatar by Kalysia!



[url=\"http://syaoku.beauti


Offline Mitzrael

  • TAFL Senior Staff
  • *
    • Posts: 179
  • ^ just your average ninja :D
    • View Profile
    • http://rainawhile.net
good, I updated my remaining PHPFB listings still not converted ^^;; and my hostees' too.
thanks Mura  :flower:
« Last Edit: May 02, 2006, 12:01:55 AM by Mitzrael »
ソニア!ninja ^/_\^ | Items/Locations + Manga-ka & Directors + Music and Songs + Rivalries
Your daily dose of coffee in a pill [ rain awhile ]


Offline Loika

  • Newbie
  • *
    • Posts: 0
    • View Profile
    • http://www.kachiky.net
Thanks for the heads up! *will be doing some re-uploading soon*
~Loika | 3:33AM | LiveJournal


Offline Estefania

  • Newbie
  • *
    • Posts: 0
  • ★ MANGA (Fullmetal Alchemi
    • View Profile
    • http://mixed-metaphor.org
Thanks for posting this~

2 out of 25 done ^^;;
[color="#b4b4b4"][font="Georgia"]if we become unable to talk about our ideals, the evolution of humans will come to an end.[/font][/color]

[color="#1F6488"]❝[font="Georgia"]mixed metaphor organisation [color="#f3c629"]☆[/


Offline Ruki

  • Newbie
  • *
    • Posts: 0
  • Anime/Manga, drawing, Hagaren, P
    • View Profile
    • http://elric-kyoudai.net

Neon

  • Guest
I don't know if it belongs here, but I thought I'd post this.  Several of my hostees use PHPFanbase, but even with a slight fix (that I don't know if it worked) there where problems.  If your hosted on Surpass, please be avise that they're no longing allow PHPFanbase and probably other codegrrl scripts.  As I said in Downtime & Hosting Trouble, here is what I was told because of Beautiful-beast.net suspension.

Quote
Kellie,

There were multiple installs of a codegrrl script located on this account. Due to the insecurities of this script, it is no longer allowed to be hosted on our network.

---
http://secunia.com/advisories/17542/
---

Because of this script, IRC bots and php shells were uploaded to your account. I have removed as many of the files as I can, however there could be more left on the account. In order for us to unsuspend your account we need to you to agree to the following:

1) Remove all install of the codegrrl script
2) Look over folders for any suspicious files

If you agree to the above, I will unsuspend your account, and then check your account to ensure that everything is currently secure. Also, what other scripts (and versions please) do you run on your account? This will allow me to audit your account for security and secure both the server and your data remain protected.

I will be awaiting your reply.

Regards,
-Ray F.

Surpass Hosting Abuse/Security Team

I thought I'd let everyone know.


Offline Loika

  • Newbie
  • *
    • Posts: 0
    • View Profile
    • http://www.kachiky.net
Thanks for the heads up, Neon. I guess this is a sign that I will be converting to Enth in the very near future. >_>
~Loika | 3:33AM | LiveJournal


Offline Hikoto

  • Newbie
  • *
    • Posts: 0
    • View Profile
    • http://akichigo.org
Hmm...Personally I still like the feel that Fanbase gives. (Members List/Admin CP wise) So I guess I'll just have to pray really hard for a new release! :D

http://akichigo.org\'>akichigo{DOT}org

♥ http://network.akichigo.org\'>collective
<