Forum upgrade done (01 March 2005)

Here is the place for the admins or moderators to do their annoucements. Or, if you have bought a new scope and want the whole world to know, do it here. Basically this is the place for any astro first-hand news.
User avatar
nF
Administrator
Posts: 382
Joined: Thu Sep 11, 2003 11:14 pm
Location: Singapore

Forum upgrade done (01 March 2005)

Post by nF »

Forum upgrading in process now.
Ironing out security vulnerability.

Stuff ironed out will be:

Changes since 2.0.11

* Prevented full path display on critical messages
* Fixed full path disclosure in username handling caused by a PHP 4.3.10 bug
* Added exclude list to unsetting globals (if register_globals is on)
* Fixed arbitrary file disclosure vulnerability in avatar handling functions
* Fixed arbitrary file unlink vulnerability in avatar handling functions
* Removed version number from powered by line
* Merged database update files to update_to_latest.php file
* Fixed path disclosure bug in search.php caused by a PHP 4.3.10 bug
* Fixed path disclosure bug in viewtopic.php caused by a PHP 4.3.10 bug

And

Changes since 2.0.12

* Ommitted preg_replace warning in viewtopic due to improper working of preg_quote in PHP
* Fixed high severity issue in session handling allowing everyone gaining administrator rights.
* Minimum requirements raised to PHP 4.0.3 or above due to fixing vulnerability issues breaking PHP3 compatibility.
Last edited by nF on Mon May 09, 2005 2:02 pm, edited 2 times in total.
.___.
{O,o} O'RLY?
/)__)
-"-"-
User avatar
nF
Administrator
Posts: 382
Joined: Thu Sep 11, 2003 11:14 pm
Location: Singapore

Post by nF »

Forum upgrading done.
Enjoy yourself.
Last edited by nF on Sat Apr 16, 2005 11:54 pm, edited 1 time in total.
.___.
{O,o} O'RLY?
/)__)
-"-"-
User avatar
Airconvent
Super Moderator
Posts: 5787
Joined: Tue Sep 30, 2003 11:49 pm
Location: United Federation of the Planets

Post by Airconvent »

Hi YJ
I noticed that between just now when you were "upgrading" to now when you are "done"...the online status has disappeared. was this deliberate?
we used to be able to see if a user is online by a status button on the bottom left...

rich
The Boldly Go Where No Meade Has Gone Before
Captain, RSS Enterprise NCC1701R
United Federation of the Planets
User avatar
nF
Administrator
Posts: 382
Joined: Thu Sep 11, 2003 11:14 pm
Location: Singapore

Post by nF »

Oh... must be I accidentally removed that coding, Will run through the coding and fix it tonight.

Yong Quan
.___.
{O,o} O'RLY?
/)__)
-"-"-
User avatar
nF
Administrator
Posts: 382
Joined: Thu Sep 11, 2003 11:14 pm
Location: Singapore

Post by nF »

Ok it is done. Fixed the Online/Offline problem and the quick reply problem. Display of attached pictures fixed as well. Sorry for the trouble.

Regards,
Yong Quan
.___.
{O,o} O'RLY?
/)__)
-"-"-
User avatar
nF
Administrator
Posts: 382
Joined: Thu Sep 11, 2003 11:14 pm
Location: Singapore

Post by nF »

Fixed statistics of searchbots visiting our forums.
Last edited by nF on Tue Mar 01, 2005 2:04 pm, edited 1 time in total.
.___.
{O,o} O'RLY?
/)__)
-"-"-
User avatar
acc
Administrator
Posts: 2572
Joined: Mon Sep 22, 2003 11:15 pm
Favourite scope: Mag1 Instruments 12.5" Portaball

Post by acc »

Hi Yong Quan

Thanks for all the hard work you have done to keep this forum running smoothly! :)

cheers
cc
We do it in the dark...
Portaball 12.5"
Takahashi Mewlon 210
William Optics 110ED
...and all night long!
User avatar
Airconvent
Super Moderator
Posts: 5787
Joined: Tue Sep 30, 2003 11:49 pm
Location: United Federation of the Planets

Post by Airconvent »

yeah man....appreciate your hard work on this...!
should have said this earlier but I was distracted by his cute "lord of the rings cartoon" signature....heh heh

rich
The Boldly Go Where No Meade Has Gone Before
Captain, RSS Enterprise NCC1701R
United Federation of the Planets
User avatar
weixing
Super Moderator
Posts: 4708
Joined: Wed Oct 01, 2003 12:22 am
Favourite scope: Vixen R200SS & Celestron 6" F5 Achro Refractor
Location: (Tampines) Earth of Solar System in Orion Arm of Milky Way Galaxy in Local Group Galaxies Cluster

Post by weixing »

Hi,
should have said this earlier but I was distracted by his cute "lord of the rings cartoon" signature....heh heh
Ha Ha... :k-chuckle: Hope that Censorship Board didn't see your signature... It may give your signature a "PG" rating.. hee hee :k-lol: :k-lol:

Thanks for your hard work and have a nice day.
Yang Weixing
:mrgreen: "The universe is composed mainly of hydrogen and ignorance." :mrgreen:
User avatar
chrisyeo
Posts: 1186
Joined: Wed Oct 08, 2003 9:11 pm

Post by chrisyeo »

Thank you Yong Quan

Sincerely,
Post Reply