Quick Login   
 
Register AdminFusion Tutorials Post Fusion Forum Matrix
 
Go Back AdminFusion » Software & Tech » Software » Other Software » [MyBB News] MyBB 1.2.12 Released - Security and Maintenance Release
Reply
 
LinkBack
Old 01-21-2008, 01:40 AM   #1
Forum Guru
 
Join Date: Sep 2005
Posts: 8,309
Industry News is on a distinguished road
Post [MyBB News] MyBB 1.2.12 Released - Security and Maintenance Release

MyBB 1.2.12 is a security update to MyBB 1.2 fixing a HIGH SQL Injection and MEDIUM XSRF vulnerabilities. Because of the amount of changes in this release we've decided to go ahead and include fixes for some outstanding bugs. We recommend everybody upgrades to this release immediately.

This security update fixes:

[HIGH RISK] SQL Injection vulnerability in inc/datahandlers/pm.php
[MEDIUM RISK] XSRF vulnerabilities in various files (Note: Most require the user to have a moderator account)


These vulnerabilities affect MyBB 1.2.11 and previous releases of MyBB 1.2. Older versions of MyBB may also be affected.

MyBB 1.2.11 to MyBB 1.2.12 Patch
This patch is only for users running MyBB 1.2.11. If you are running any other version of the MyBB 1.2 series then please download MyBB 1.2.12 from the MyBB site and update to it.

Please download the attached ZIP archive and replace the files in your forum directory with those from the ZIP archive.

[attachment=8464]

Information on upgrading, template changes and language changes can be found in the posts below.

Please note, that you need to run the upgrade script for this version. This is so the templates may be updated.
There are no database schema changes in this version.


Reporting MyBB security vulnerabilities
If you think you've found a vulnerability in MyBB, we advise you not to publicly post it on these forums or publicly release information about it elsewhere until we've had time to prepare and release a patch.

As always, you can send through security related messages on the MyBB website from the Contact Us page.

More...
Industry News is offline   Reply With Quote
Old 01-24-2008, 05:03 PM   #2
Apprentice
 
Cool_Guy's Avatar
 
Join Date: Jun 2006
Location: Earth, The Federation
Posts: 269
Cool_Guy is a splendid one to beholdCool_Guy is a splendid one to beholdCool_Guy is a splendid one to beholdCool_Guy is a splendid one to beholdCool_Guy is a splendid one to beholdCool_Guy is a splendid one to beholdCool_Guy is a splendid one to behold
Send a message via MSN to Cool_Guy
I upgraded and now my site is totaly broken.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.


To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.

PDC is almost here!
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Cool_Guy is offline   Reply With Quote
Old 01-25-2008, 05:19 AM   #3
Member
 
Join Date: Jun 2006
Location: California, US
Posts: 108
Tikitiki has a spectacular aura aboutTikitiki has a spectacular aura about
Quote:
Originally Posted by Cool_Guy View Post
I upgraded and now my site is totaly broken.
Which was not the cause of the upgrade. We'll be there through this hard time
Tikitiki is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
[MyBB News] MyBB 1.2.8 Released - Security & Maintenance Release Industry News Other Software 0 06-29-2007 10:54 AM
[MyBB News] MyBB 1.2.7 Released - Security & Maintenance Release Industry News Other Software 13 05-17-2007 12:14 PM
[MyBB News] MyBB 1.2.3 Released Industry News Other Software 0 02-14-2007 07:28 AM
[MyBB News] MyBB 1.2.2 Released Industry News Other Software 18 12-17-2006 10:57 PM
MyBB 1.2.1 Released - Maintenance & Security Update Release Belloman Other Software 0 09-27-2006 10:52 PM

AdminFusion

All times are GMT +1. The time now is 05:36 PM. Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

© 2009 AdminFusion | Advertising Opportunities | Legal | A member of the Crowdgather Forum Community
 
From:
Title:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77