Quick Login   
 
Register AdminFusion Tutorials
 
Featured Sponsors


One.com Domain and Hosting


Register
Forum of the Month
Australian Webmaster
fotm

A webmaster forum specifically catering for Australian site owners. We discuss site development, marketing and management issues.

Tag Cloud
Latest Threads
Forum Stats
7,843 Members
164,838 Posts
39 Users Online

Please welcome our newest member, mmmmmu!

Affiliates
Go Back AdminFusion » Getting Started » Software » Invision Power Board » [IPB News] IP.Board 2.3.4 Security Enhancements and DST Bug Fix
Welcome to the AdminFusion. AdminFusion is the ultimate resource for forum administrators and moderators. With exclusive articles, interviews with the experts, free downloadable skins, and the revolutionary post exchange system - PostFusion, AdminFusion is the place to go for all of your forum needs.  By joining AdminFusion, you will become part of a thriving admin community and immediately gain access to all of these resources. Registration is fast, simple and absolutely free so please join us today!
Want more than our forums? Try these: Post Fusion Forum Matrix
Old 03-14-2008, 02:02 AM   #1

Title: Apprentice

Points: 4,964, Level: 20Points: 4,964, Level: 20Points: 4,964, Level: 20
Level up: 21%, 86 Points neededLevel up: 21%, 86 Points neededLevel up: 21%, 86 Points needed
Activity: 45%Activity: 45%Activity: 45%

Join Date: Sep 2005

Posts: 443

Industry News is on a distinguished road
 
 
Post [IPB News] IP.Board 2.3.4 Security Enhancements and DST Bug Fix

<b>IP.Board 2.3.4 Security Enhancements and DST Bug Fix</b><br /><br />We are releasing a minor security update to address issues recently reported regarding areas of IP.Board 2.3.4. These security issues are rather low priority and the impact is minimal due to other security features in the software. We would like to thank the users and administrators of <a href="http://www.criticalsecurity.net/" target="_blank">criticalsecurity.net</a> for their help in identifying the issues and testing the patches.<br /><br /><b>Issue</b><br /><br />Nesting custom bbcode in an improper fashion can result in the final HTML result of the bbcode being broken, and subsequently unwanted HTML injected into the tag. If used in specific fashions, a person could inject javascript event handlers into the final result. Additionally, we have added an "allowscriptaccess" parameter to flash movies parsed in IPB to prevent flash movies and avatars from having javascript access. These issues are mitigated due to the use of httpOnly cookies in IP.Board which limits the direct impact.<br /><br />Additionally, we have patched a recent bug with the automated DST checking in IPB that has surfaced since the recent DST changeover.<br /><br /><b>Patching Your IP.Board</b><br /><br />The IP.Board 2.3.4 download in the client area has already been updated with the required changes. If you download IP.Board after the date of this announcement your installation will be up to date.<br /><br /><b>Changed Files</b><br /><br />Download the zip file below which includes only the changed files for this update. Simply upload and overwrite the old files.<br /><br /><a href='http://forums.invisionpower.com/index.php?act=attach&type=post&id=16364'>http://forums.invisionpower.com/index.php?act=attach&type=post&id=16364</a><br />

More...
Reply With Quote
Old 03-14-2008, 02:06 AM   #2

Title: Rookie

Points: 1,177, Level: 9Points: 1,177, Level: 9Points: 1,177, Level: 9
Level up: 10%, 173 Points neededLevel up: 10%, 173 Points neededLevel up: 10%, 173 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Oct 2006

Posts: 28

Location: Calgary, AB

Borghunter is on a distinguished road
Send a message via AIM to Borghunter Send a message via MSN to Borghunter Send a message via Skype™ to Borghunter  
 
TIP: Actually look at what is in that white box you type in. LMAO
__________________
Reply With Quote
Old 03-14-2008, 10:00 AM   #3

Jolteon's Avatar

Title: Forum Junkie

Points: 18,024, Level: 40Points: 18,024, Level: 40Points: 18,024, Level: 40
Level up: 41%, 26 Points neededLevel up: 41%, 26 Points neededLevel up: 41%, 26 Points needed
Activity: 72%Activity: 72%Activity: 72%

Join Date: Feb 2006

Posts: 3,622

Location: Holmfirth, England

Jolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant futureJolteon has a brilliant future
Send a message via MSN to Jolteon  
 
FAILING:
They're doing it right!

__________________
http://EasyToHide.Info
Visit my proxy for anonymous surfing!

Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

AdminFusion

All times are GMT +1. The time now is 11:04 PM. Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0 © 2005-2008 AdminFusion - All Rights Reserved



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72