since I've discovered a couple of issues with two files in XS, I've decided to release this quick patch.
As I said in the past, the best thing you can do to secure your site from REMOTE FILES INCLUSION using phpbb_root_path method is modifying the HTACCESS as I've suggested in another post in this section.
To apply this patch just replace the two files with the included ones.
Thank you.
P.S.: here is one of the link which reports the functions.php vulnerability http://www.securityfocus.com/bid/19961.
058_011_functions_bbcbmg.zip | ||
Description: | 058-011 - Functions and BBCBMG | ![]() Download |
Filename: | 058_011_functions_bbcbmg.zip | |
Filesize: | 19.42 KB | |
Downloaded: | 650 Time(s) |