Login

Who's Online

Google








Home arrow Recent Posts
Discussion Forum
August 29, 2008, 09:50:57 PM *
Welcome, Guest. Please login or register.

Login with username, password and session length
News: SMF - Just Installed!
 
   Home   Help Search Login Register  
Pages: [1] 2 3 ... 10
 1 
 on: August 12, 2008, 06:01:40 PM 
Started by Franka - Last post by Franka
Everyone should update their Bibtex component files bibtex.php, jombib.html.php and jombib.php

so that the first lines read to remove a major vulnerability:

<?php
defined( '_VALID_MOS' ) or die( 'Direct Access to this location is not allowed.' );

remove later occurrence of
defined( '_VALID_MOS' ) or die( 'Direct Access to this location is not allowed.' ); in one of the files.

With thanks to Hazzaa of joomlame.com

 2 
 on: August 12, 2008, 05:54:34 PM 
Started by Kings Pawn - Last post by Franka
Better Agora http://www.joomlame.com/

Fireboard died a death on 1.04

 3 
 on: August 03, 2008, 08:33:33 PM 
Started by Philam - Last post by Philam
Hello,

I found a part of the solution:

in the URL, if I add &Itemid=59 in the end of URL, it works...

 4 
 on: August 01, 2008, 10:04:41 AM 
Started by Philam - Last post by Philam
Hello Mark,

You perhaps remember me, I spammed you with several modifications on your great component Bibtex

I have one more problem. Hope it's the last one!

I modified a few parts of your component. I attached the files. I modified joombib.php and joobib.html.php in the frontend.

I encounter a problem with the different types of users in joomla. The authors and above can access to all the pages of references, but the registered people (simple users) can't navigate on the pages. I don't know if it was the case before I changed the component.

When I'm connected with an user account, I clic on the "page 2", and this text appears : "You are not authorised to view this resource."

How do you manage the users acccess?

Thank you for helping

Phil


 5 
 on: June 04, 2008, 10:20:37 PM 
Started by Franka - Last post by Franka
I sent you the files Mark.

There is one hack in them that you advised re paging issue, other than that they should be as supplied in 1.32b release.

 6 
 on: June 04, 2008, 09:37:01 PM 
Started by Franka - Last post by Mark Austin
OK, it looks like there is a security hole in the Joomla Bibtex component that some cheerful group are taking advantage of.  I would love to get this fixed, but I simply do not have the time at the moment and have little experience when it comes to security.  I assume it is an SQL injection problem, can anyone give me a hint as to how to close the hole?

 7 
 on: June 04, 2008, 08:51:33 PM 
Started by Franka - Last post by Franka
Some 15,000 visitors hit the phishing page... with that many fools reacting to the spam  Shocked

There was also a virus package, no idea  if it was called by Bibtex as by the time I realised that the front end had been altered I had already disabled the files in the backend.

Identified, it was Trojan Horse PHP/BackDoor.C99shell in file bayo.php

 8 
 on: June 04, 2008, 03:55:13 PM 
Started by Franka - Last post by Franka
last file is known now.

BIBTEX has been hacked  Angry

 9 
 on: June 04, 2008, 10:09:40 AM 
Started by Franka - Last post by Franka
Some files have been added to the JOMBIB directory of my site after clean-up I am left with

BibTex.php
checkit.php
download.bib
errors.php
jombib.html.php
jombib.php
php.cgi.core

are these all supposed to be there, particularly that last one? which is 73Mb :-o

 10 
 on: May 03, 2008, 10:25:27 AM 
Started by Franka - Last post by Franka
That works, thank you Smiley

Pages: [1] 2 3 ... 10
Powered by SMF 1.1.1 | SMF © 2006, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
© 2008 Everything That I Know About