phpBB-TweakS
 
Advanced Search
   
 
Home Downloads FAQ Register FAQ Memberlist Usergroups Ranks
 
 

Please help us to develop!

 
It appears you are using a browser that is not based on Internet Explorer, this means you are not viewing the web as good as you should be. Other browsers might try to immitate Internet Explorer, but none can parse the web as it should like Internet Explorer can. So view the web as it was meant to be with Avant Browser!
         

phpBB-TweakS Forum Index Feedback #unset($dbpasswrd); is high security risk!
Display posts from previous:   
Half Thread Topic  Fully Thread Topic  Download Topic
      All times are GMT - 5 Hours  
Post new topic  This topic is locked: you cannot edit posts or make replies.

Wed Jan 11, 2006 5:55 pm
Author Message
deny
Moderate TweakeR
Moderate TweakeR


Joined: 07 Jan 2005
Posts: 53
Words Posted: 4,860
Average Post: 91.70


Post subject: #unset($dbpasswrd); is high security risk! Reply with quote

Patch for "phpbb security" where
Code:
unset($dbpasswrd);
need to be change to
Code:
#unset($dbpasswrd);
that should allow backup of database is high security risk.
Is there any other solution?
Post #1
      Back To Top  

Wed Jan 11, 2006 6:03 pm
Author Message
Spinebuster
Support Team
Support Team


Joined: 21 Jan 2005
Posts: 413
Words Posted: 25,498
Average Post: 61.74


Post subject: Reply with quote

If its such a high security risk then why did the phpbb team leave it open for so long?

Currently that is the only easy fix without having to rewrite the db backup feature.
Post #2
      Back To Top  

Wed Jan 11, 2006 7:34 pm
Author Message
aUsTiN
Webmaster
Webmaster


Usa Georgia

Joined: 05 Jan 2005
Posts: 3684
Words Posted: 144,671
Average Post: 39.27

Location: USA

Post subject: Reply with quote

1.0.3 has it fixed.
Post #3
      Back To Top  

 
         

Post new topic  This topic is locked: you cannot edit posts or make replies.

phpBB-TweakS Forum Index Feedback #unset($dbpasswrd); is high security risk!
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


      Back To Top  

Page 1 of 1
Jump to:  
 
Protected by phpBB Security © phpBB-TweakS
phpBB Security Has Blocked 3,237 Exploit Attempts.

· Archive · Sitemap: Index · Sitemap: Forums · Sitemap: Topics · Sitemap: Posts ·

:: [ Load Time: 2.9 Seconds ] :: [ 29 Queries ] :: [ 2,931 Page(s) Viewed Today ] ::
:: [ Todays Queries: 83,558 ] :: [ Highest Load: 1,396,429 Queries On May. 08, 2007 ] ::
:: [ SQL Load: 61% Time: 1.8 ] :: [ PHP Load: 39% Time: 1.1 ] :: [ Debug: On ] :: [ GZIP: Enabled ] ::
:: The server last rebooted 72 days, 6 hours, 38 minutes, 0 seconds ago. ::

The phpBB[Network]!
       
Powered by phpBB 2.0.* © 2001, 2002 phpBB Group
Avalanche style by What Is Real © 2004