<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
	<channel>
		<title><![CDATA[Latest posts for the topic "hack in advance westbook 2.2"]]></title>
		<link>https://proxy2.de/forum/posts/list/3.php</link>
		<description><![CDATA[Latest messages posted in the topic "hack in advance westbook 2.2"]]></description>
		<generator>JForum - http://www.jforum.net</generator>
			<item>
				<title>hack in advance westbook 2.2</title>
				<description><![CDATA[ Dear<br /> <br /> Please Helpme, in my westbook always change my password, the htlm is off, the picture is on. A hack edit a record and change a picture for this script<br /> <br /> &lt;iframe src=http://es.geocities.com/hacked_esi/deface.txt&gt; <br /> <br /> &lt;SCRIPT TYPE="text/javascript" LANGUAGE=JAVASCRIPT&gt;<br /> &lt;!--<br /> if (top.frames.length!=0)<br /> top.location=self.document.location;<br /> // --&gt;<br /> &lt;/SCRIPT&gt;<br /> <br /> and more, the scrip show the westbook record in administration mode without option "delete" or "edit"<br /> <br /> Regards]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12007.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12007.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 21:32:22]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Firstly report that geocities account to geocities to shut it down and then <br /> wait for Carbonize to have a look at this thread.<br /> <br /> Auron]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12008.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12008.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 21:44:45]]> GMT</pubDate>
				<author><![CDATA[ Auron]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ A link would be useful. Are you using Advanced Guestbook 2.2 or 2.3.1?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12009.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12009.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 21:50:09]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>Guestbook</title>
				<description><![CDATA[ 2.2.  <br /> <br /> Is strange, I can reproduce this error to edit wherever record in admin mode and change the word text for the scrip.....but htlm is off????<br /> <br /> Regards]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12010.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12010.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 22:02:12]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Yes as admin you can put anything you want in the entry even HTML. The script deals with any HTML tags and AGcode in a post when it is submitted.I assume you have access to your admin again? If you do then I recommmend looking in this forum for my fix for this exploit.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12012.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12012.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 22:27:20]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>change</title>
				<description><![CDATA[ Ok, I read some notes in your forum, and change the line in php for <br /> if (!get_magic_quotes_gpc()) { <br /> $username = addslashes($username); <br /> $password = addslashes($password);<br /> <br /> Is all ok now?<br /> <br /> Regards]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12013.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12013.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 22:42:07]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Yup thats basically the jist of it.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12014.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12014.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 22:44:28]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>Thank</title>
				<description><![CDATA[ Many Thanks Carbonize.......<br /> <br /> The last question, I will found and delete the fake Admin in the database?<br /> <br /> Regards]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12015.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12015.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 23:16:47]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title>Sorry</title>
				<description><![CDATA[ I MUST found and delete the fake administrator in my database, or his hack and pass with my administrator user?<br /> <br /> Regards]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12016.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12016.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 23:40:08]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Wel if you haven't patched the exploit you can alway slog in using it. If you have patched simply restore the old session.class.php and use the exploit.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12017.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12017.php</link>
				<pubDate><![CDATA[Mon, 22 Nov 2004 23:41:10]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>Sorry again</title>
				<description><![CDATA[ Sorry<br /> <br /> If the patch = change the session.class.php for new scrip, why you say me "if you have patched simply restore the old session.class.php"???????.....and what is "the exploit"?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12018.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12018.php</link>
				<pubDate><![CDATA[Tue, 23 Nov 2004 00:09:38]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ The exploit is simple and posted in many places online. I don't feel it is appropriate for me to post it in here though. To unpatch simply do the reverse my fix.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3911/12032.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3911/12032.php</link>
				<pubDate><![CDATA[Tue, 23 Nov 2004 11:06:05]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
	</channel>
</rss>