OK
Rating:
0.19
Thread Listing » MetaForum Specific Discussion
Private thread bug in metaforum
#114315 by Sixe (0.3970) posted on 12:30pm Wednesday, July 08th, 2009
I've just found a breach in metaforum code who would allow anyone to add himself to any private thread.
[Q]



I'll explain it to Brian in private.
When he'll have fixed it, I'll let him give more explanation about it to allow other people running metaforum to fix it by themselves.
[Q]



*Edited at 12:30pm, 07/08/09
Score: 0 points
Any particular reason?
#114318 by briantech (1.0000) posted on 4:00pm Monday, July 13th, 2009
As a former CTO of mine used to say "We're not writing bank software here, folks."
[Q]



heh just kidding. let me know what the problem is and I'll put it in a fix.
[Q]

--
"That which can be asserted without evidence, can be dismissed without evidence." - Christopher Hitchens
Score: 0 points
Any particular reason?
#114332 by bean (0.1975) posted on 2:28pm Thursday, July 23rd, 2009
briantech said:
heh just kidding. let me know what the problem is and I'll put it in a fix.
[Q]



Has the issue been fixed yet?
[Q]



Because I'm running a metaforum and wouldn't want anyone to be able to see things they shouldn't.
[Q]

Score: 0 points
Any particular reason?
#114345 by bean (0.1975) posted on 1:12pm Friday, August 07th, 2009
It's becoming worrying...
[Q]



No new release to fix those security issues, and it's been a month.
[Q]

Score: 0 points
Any particular reason?
#114346 by briantech (1.0000) posted on 5:09pm Friday, August 07th, 2009
Hmm, I'll see if I can push out a release this weekend. Just been really busy.
[Q]

--
"That which can be asserted without evidence, can be dismissed without evidence." - Christopher Hitchens
Score: 0 points
Any particular reason?
#114347 by bean (0.1975) posted on 6:46am Saturday, August 08th, 2009
briantech said:
Hmm, I'll see if I can push out a release this weekend. Just been really busy.
[Q]



Cool.
[Q]

Score: 0 points
Any particular reason?
#114354 by bean (0.1975) posted on 11:31pm Sunday, August 16th, 2009
I guess I said "cool" a little bit too early.
[Q]

Score: 0 points
Any particular reason?
#114358 by briantech (1.0000) posted on 6:28am Wednesday, August 19th, 2009
Haha! Yeah I guess you did.
[Q]

--
"That which can be asserted without evidence, can be dismissed without evidence." - Christopher Hitchens
Score: 0 points
Any particular reason?
#114359 by error404 (1.0000) posted on 7:01am Wednesday, August 19th, 2009
briantech said:
Haha! Yeah I guess you did.
[Q]



It is probably just a couple line fix isn't it? Something with an authentication mess up somewhere?
[Q]

--


Score: 0 points
Any particular reason?
#114360 by briantech (1.0000) posted on 7:22am Wednesday, August 19th, 2009
Yeah I doubt its anything significant.
[Q]

--
"That which can be asserted without evidence, can be dismissed without evidence." - Christopher Hitchens
Score: 0 points
Any particular reason?
#114361 by Sixe (0.3970) posted on 7:25am Wednesday, August 19th, 2009
I confirm. There's only a couple lines to add for each breach I've explained.
[Q]

Score: 0 points
Any particular reason?
#114363 by hmm (anonymous) posted on 7:27pm Wednesday, August 26th, 2009
( no avatar )
Whats going on guise?
[Q]

Score: 0 points
Any particular reason?
Thread Listing » MetaForum Specific Discussion » Private thread bug in metaforum

Post A Reply:

Powered by Metaforum ©2004-2010
Get your own Free AJAX Forum Messageboard by visiting the offical site.
.