Thu, 2 September 2010

Total Visits
12170037
Visitors today: 3588

Main Menu
Home
Free Scripts
Free Email
Newsserver
Forum
Guestbook
Web Links
Contact

Our Sponsors
Stromvergleich

Chi Kien Uong
Bebelstrasse 90
70193 Stuttgart
Tel: +49(711) 4596534
Fax: +49(711) 9976123
Deutschland / Germany
If you are not registered or logged in, you may still use these forums but with limited features. Show recent topics 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in
Patch for new exploit
 
Post new topic   Reply to topic    proxy2.de Forum Index -> Support Forum Printable version
View previous topic :: View next topic  
Author Message
Carbonize



Joined: 12 Jun 2003
Posts: 3961
Location: Bristol, UK

PostPosted: Sat Jan 22, 2005 2:11 pm    Post subject: Patch for new exploit Reply with quote

Ok firstly let me just say that a recently posted "exploit" on Security Focus claiming that peole could exploit the guestbook using the homepage field is incorrect as the guestbook already checks the submitted url.

Anyway whilst disproving this exploit I realised there is an exploit that would require only minor knowledge to perform so I am submitting this patch before anyone else publicises the exploit.

Open up lib/add.class.php. Find oth occurences of
Code:
$agent = getenv("HTTP_USER_AGENT");
and replace them with
Code:
$agent = htmlspecialchars(getenv("HTTP_USER_AGENT"));
Now you are patched.
_________________
Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
Back to top
View user's profile Send private message Send e-mail Visit poster's website AIM Address Yahoo Messenger MSN Messenger
Carbonize



Joined: 12 Jun 2003
Posts: 3961
Location: Bristol, UK

PostPosted: Sat Jan 22, 2005 4:23 pm    Post subject: Reply with quote

pre-emptive *bump*
_________________
Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
Back to top
View user's profile Send private message Send e-mail Visit poster's website AIM Address Yahoo Messenger MSN Messenger
JTD



Joined: 08 May 2004
Posts: 529
Location: Arkansas

PostPosted: Sat Jan 22, 2005 4:24 pm    Post subject: Reply with quote

Applied patch guestbook working fine. Another good job by carbonize. Razz
_________________
LINK-> Use Lazarus Guestbook
Back to top
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger MSN Messenger
Guest






PostPosted: Sat Jan 22, 2005 10:23 pm    Post subject: Reply with quote

Thanks Carbonize - patch inserted - so far, works fine.

I'll let you know if I experience any problems with it.
Back to top
Carbonize



Joined: 12 Jun 2003
Posts: 3961
Location: Bristol, UK

PostPosted: Sat Jan 22, 2005 11:05 pm    Post subject: Reply with quote

Well this is a 0 day exploit meaning that it has not been published anywhere else yet to my knowledge. It's not the easiest exploit to actually pull off but better safe than sorry.
_________________
Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
Back to top
View user's profile Send private message Send e-mail Visit poster's website AIM Address Yahoo Messenger MSN Messenger
Auron



Joined: 23 Jun 2003
Posts: 1051

PostPosted: Sat Jan 22, 2005 11:54 pm    Post subject: Reply with quote

*bump*
_________________
Visit my site @ www.ragnaru.com
Adv. Poll Install Guide NOW BACK ONLINE! (And also rather out of date I would of thought)
Back to top
View user's profile Send private message Send e-mail Visit poster's website
Carbonize



Joined: 12 Jun 2003
Posts: 3961
Location: Bristol, UK

PostPosted: Sun Jan 23, 2005 12:01 am    Post subject: Reply with quote

OK I misread the exploit posted on the security focus site. With the discovery of these two exploits I am going to have to bring forward the release of Advanced Guestbook 2.4. It will not be that major an update but will patch several exploits, add Yahoo & MSN fields, add a third option to gender and some other midnor differences.
_________________
Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
Back to top
View user's profile Send private message Send e-mail Visit poster's website AIM Address Yahoo Messenger MSN Messenger
amber222



Joined: 07 May 2004
Posts: 586

PostPosted: Mon Jan 24, 2005 7:35 pm    Post subject: Reply with quote

*bump*
Back to top
View user's profile Send private message Send e-mail
Guest






PostPosted: Wed Jan 26, 2005 5:04 pm    Post subject: Reply with quote

applyed patch now looking forward the the update 2.4
Back to top
Display posts from previous:   
Post new topic   Reply to topic    proxy2.de Forum Index -> Support Forum All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB © phpBB Group
Processed in 0.037539 seconds : 11 queries executed