Compguy11 Custom Modifications: IP.Board 2.3.6 and 3.0.5 Security Update - Compguy11 Custom Modifications

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • This topic is locked

IP.Board 2.3.6 and 3.0.5 Security Update Rate Topic: -----

#1 User is offline   IPS News Bot Icon

  • Newbie
  • Group: Members
  • Posts: 0
  • Joined: 24-September 09
  • Gender:Male

Posted 08 March 2010 - 10:34 AM

It has come to our attention that there is a possible XSS exploit present in both IP.Board 2.3.6 and 3.0.x. This vulnerability allows the attacker to insert CSS or Javascript into certain BBCodes that is executed when a user displays the page.

Resolution
Please download the relevant zip for your IP.Board. Expand the zip file and upload the file over the copy on your server. No other action is required.

IP.Board 3.0.5
 305xss_march10.zip (13.29K)
: 230

IP.Board 2.3.6
 236xss_march10.zip (15.61K)
: 95

The main download zips have been updated. If you have downloaded either 2.3.6 or 3.0.5 since the time of this announcement, then you do not need to patch your installation.

View the full article
0

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • This topic is locked

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users