XSS in piCal-0.91h
from PEAK XOOPS
(2009/2/23 4:40)
|
a XSS is found in piCal-0.91h
You'd better to select just ONE of these actions(1) update piCal into the latest version= 0.92- recommend for site owners using piCal as is(2) overwrite just piCal/index.php in the latest archive
- recommend for site owners using piCal with some hacks
(3) patch piCal/index.php manually
- recommend for experts. it's an easy patchline 154 in index.php
[code]
$xoopsTpl-assign('print_link',$mod_url/print.php?event_id={$_GET['event_id']}amp;action=View) ;$xoopsTpl-assign('print_link',$mod_url/print.php?event_id=.intval($_GET['event_id']).amp;action=View) ;[/code]If you use Protector and turningenable anti-XSS (BigUmbrella)on, don't worry about it. The feature ofanti-XSScan protect attacks via XSS entirely.Anyway, you'd better update piCal if you use older piCal.And I strongly recommend you to turnenable anti-XSS (BigUmbrella)on, even if you use piCal.
|
XSS in piCal-0.91h
from PEAK XOOPS
(2009/2/23 4:40)
|
a XSS is found in piCal-0.91h
You'd better to select just ONE of these actions(1) update piCal into the latest version> = 0.92- recommend for site owners using piCal as is(2) overwrite just piCal/index.php in the latest archive
- recommend for site owners using piCal with some hacks
(3) patch piCal/index.php manually
- recommend for experts. it's an easy patchline 154 in index.php
[code]
$xoopsTpl-> assign('print_link',"$mod_url/print.php?event_id={$_GET['event_id']}&action=View") ;$xoopsTpl-> assign('print_link',"$mod_url/print.php?event_id=".intval($_GET['event_id'])."&action=View") ;[/code]If you use Protector and turning"enable anti-XSS (BigUmbrella)"on, don't worry about it. The feature of"anti-XSS"can protect attacks via XSS entirely.Anyway, you'd better update piCal if you use older piCal.And I strongly recommend you to turn"enable anti-XSS (BigUmbrella)"on, even if you use piCal.
|
XOOPS 2.3.3 RC Is Released
from XOOPS Project!
(2009/2/22 13:10)
|
After over 20,000 downloads of XOOPS 2.3.2b ( see here ), the XOOPS Development Team is pleased to announce the release of XOOPS 2.3.3 RC . This release includes many bugfixes and user experience improvements, done by XOOPS Core Development Team and XOOPS community. Some of the areas: - profile and pm modules improved by dhcst - installer improved by dugris and marco, etc. - theme improved by mamba, aph3x, kris and burning - tinymce editor improved by dugris and luciorota - snoopy class upgraded by julionc - smarty upgraded by dhcst - bug tracker managed by marco Please remember: This release is ONLY for testing! Do NOT use it on productions sites. And if you're installing it over previous test installation, make a BACKUP first! Please also note that some hacks done for previous XOOPS versions might not work with this release: testing before installing is always a good choice Download it from Sourceforge repository . Please post and discuss all issues related to this ...
|
Newbbex : a flexible and efficient forum for your Xoops site, version 1.7
from XOOPS Project!
(2009/2/22 11:20)
|
Instant-Zero has released a new version of their Xoops module Newbbex . Changelog - Better compatibility with Xoops 2.3 - Depreciated functions were changed - Several bugs corrections More info&Download: http://xoops.instant-zero.com/modules/news/article.php?storyid=84
|
UserPage : offer mini blogs to your users, version 1.4
from XOOPS Project!
(2009/2/22 11:10)
|
Instant-Zero has released a new version of their Xoops module Userpage . Changelog - Code refactoring - Better support for Xoops 2.3.x - The module's templates were modified (pages and blocks) - You can now use url rewriting - You can select the editor you want to use - There were some changes in the translations (see lang.diff) More info&Download: http://xoops.instant-zero.com/modules/news/article.php?storyid=82
|
American Stone Site
from XOOPS Project!
(2009/2/22 10:20)
|
Hi Xoops Community! This is a brazilian website from a granite company. http://www.americanstone.com.br/ I've used the following XOOPS modules: - mastop publish 1.1 - news 1.63 - liaise 1.26 Regards and nice weekend to all.
|
Travel Hongkong Site
from XOOPS Project!
(2009/2/22 3:10)
|
Hi Xoops Community, today I will present my travel and blog portal Reisen Hongkong . I've built the travel site with the following XOOPS modules: - wiwimod 0.8.4 - sitemap 1.31 - pico 1.63 - wordpress 2.0.11 - altsys 0.7.1a Have a nice weekend and look at my travel site Lastminute Hongkong . Regards and happy XOOPSing
|
News 1.63 + Latestnews 1.72 - SEO optimization
from XOOPS Project!
(2009/2/20 5:50)
|
We all know the benefits of using friendly url on our websites. This increases the number of visits to our website being better indexed by search engines. [img]http://www.esxoops.com/image.php?id=32[/img] The user ElSanto webmaster of GuiaSexo offers the community the improvements made in two modules: News 1.63 and lastestnews 1.72. The modules were tested on versions 2.0.18.2 and 2.3.2 of XOOPS, without any problem, offering friendly url for the news category, the printable version and create PDF files. Url examples /Noticias.cat.3/actualidad.html /Noticias.item.5/una-iniciativa-para-crear-conciencia.html /Noticias.print.5/version-imprimible.html /Noticias.pdf.10/una-iniciativa-para-crear-conciencia.pdf The instructions for the upgrade/installation, are in the folder SEO/seo.rtf These are sites that are already operating on the hack: http://aclomas.org.ar/noticias/ ( also include xoModuleRewrite of DuGris ) http://cumbiadeperu.com/modules/news/ EDIT: link removed because o ...
|
Xoops Theme Sinnedesign-008-Green
from XOOPS Project!
(2009/2/20 5:00)
|
Dear Xoopser, and again, I want to present my next new color variant xoops theme sinnedesign-008-green . You can see the design-variant Sinnedesign-008-green under xoops theme demo . The Theme Sinnedesign-008-Green comes from the Sinnedesign-008-Blue. Here you can find the free Download Xoops Theme Sinnedesign-008-Green . Regards and a nice day wish your Sinnedesign
|
MyExistenzgruender
from XOOPS Project!
(2009/2/19 3:40)
|
Hi XOOPS Community, I have relaunched my German portal with blog about setting up a business. The focus of the site is the German Mini GmbH . I'm using XOOPS-2.0.18.2 and the following XOOPS Modules on this site: - News - Sitemap - Tags - Pico - Altsys Have fun and start your own business. Firmengründung
|