Re: trying to find the Best php forum software...HELP!



boilerroom86@xxxxxxxxx wrote:

I have heard things about some ppl saying that earlier versions of
phpBB had security issues...is this still true?? I have used this
software a while back and it seemed fairly easy to implement..but
security was a worry there...

Bugs in phpbb has been fixed in almost the same time as they have been found, the things from the past ain't there anymore.

This is the most used php forum on the net nowadays.



//Aho
.



Relevant Pages

  • [UNIX] PHPBB BBcode Process Vulnerability (DoS)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... WSS has found a vulnerability in <http://www.phpbb.com/> phpBB, ... Will cause the following data to be saved to the database: ... whitecell$ mysql -uuser -ppasswd ...
    (Securiteam)
  • [UNIX] phpBB Security Hole Leads to Root Compromise
    ... phpBB Security Hole Leads to Root Compromise ... which essentially allows administrative access to the bulletin ... certain PHP variables submitted through a URL can reach an SQL ...
    (Securiteam)
  • [Fwd: phpBB 2.0.17 released]
    ... Subject: phpBB 2.0.17 released ... phpBB Group announces the release of phpBB 2.0.17, the "no, we did not ... security since we do not introduce new features into the 2.0.x codebase. ... reporting 2.0.x bugs within the next days. ...
    (Bugtraq)
  • RE: phpBB 2.0.17 remote avatar size bug
    ... I think some people just try to hard to find problems with PHPBB. ... phpBB 2.0.17 remote avatar size bug ... Classifying a report as invalid can have various reasons, ... This isn't a security problem. ...
    (Bugtraq)
  • CastleCops phpBB bbcode Input Validation Disclosure
    ... privmsg.php for phpBB 2.0.14 (possible all ... The CastleCops suggested patch was integrated into bbcode.php. ... Modsecurity adds a nice layer of security in filtering requests to a ...
    (Bugtraq)