Go Back   Pligg CMS Forum > Announcements > Pligg News

Closed Thread
 
LinkBack Thread Tools Display Modes
  #11 (permalink)  
Old 05-27-2007, 12:43 AM
New Pligger
 
Join Date: Mar 2007
Posts: 4
Thanks: 1
Thanked 0 Times in 0 Posts
ya this is bad news, but thankfully anyone who seriously runs a site should receive the email.

btw the upgrade worked fine for me, version 9.1

thx for letting us know
  #12 (permalink)  
Old 05-27-2007, 12:47 AM
New Pligger
 
Join Date: Dec 2006
Posts: 3
Thanks: 1
Thanked 0 Times in 0 Posts
blank upgrade.php

Quote:
Originally Posted by AshDigg View Post
For 8.2 follow the same instructions but use these files.
Had the same problem, loading upgrade.php (I am also under a modified version 8 of pligg) I only got a white window - I'm on a Mac. In the past, white php files showed some cross-platform problems, like different line endings or smart quotes or something, but I went through all what I know and it still returned just a white page.

At this point I am not sure if it upgraded all the same, because I replaced my original login.php file with the new one and I could log in.

I guess this means that the patch worked even if I only saw a white upgrade.php ??

Thanks.

---marlyse
  #13 (permalink)  
Old 05-27-2007, 01:10 AM
Pligg Donor
 
Join Date: Nov 2006
Posts: 55
Thanks: 5
Thanked 2 Times in 2 Posts
Do we delete the upgrade_login.php file as well if all worked?
  #14 (permalink)  
Old 05-27-2007, 01:22 AM
wwwSENSERELYcom's Avatar
Casual Pligger
 
Join Date: May 2007
Location: Tianjin, China
Posts: 73
Thanks: 2
Thanked 2 Times in 1 Post
yes you can delete the file. but look into the file and see what it is doing to your database, and then check in your database to see if it has been done, so you'll know.

I am not a hacker so I don't know exactly what was a problem in the reset password way of doing things, but if it was there for many versions and nobody reported being hacked then it means hackers don't care YET about webmasters using pligg :-)
  #15 (permalink)  
Old 05-27-2007, 01:32 AM
Pligg Donor
 
Join Date: Nov 2006
Posts: 55
Thanks: 5
Thanked 2 Times in 2 Posts
Ah k, I think it's just altering the "last_reset_code" row.

Mine now says:

last_reset_code varchar(255) latin1_swedish_ci Yes NULL
  #16 (permalink)  
Old 05-27-2007, 02:58 AM
New Pligger
 
Join Date: Mar 2007
Posts: 10
Thanks: 1
Thanked 1 Time in 1 Post
Hello Pligg,
thanks for the tip!!
  #17 (permalink)  
Old 05-27-2007, 03:12 AM
eon eon is offline
Casual Pligger
 
Join Date: May 2007
Posts: 44
Thanks: 1
Thanked 0 Times in 0 Posts
Thank you for the update.
  #18 (permalink)  
Old 05-27-2007, 06:14 AM
New Pligger
 
Join Date: Mar 2007
Posts: 21
Thanks: 3
Thanked 0 Times in 0 Posts
Thank you

I was hacked yeserday!
  #19 (permalink)  
Old 05-27-2007, 07:07 AM
New Pligger
 
Join Date: May 2007
Posts: 1
Thanks: 0
Thanked 0 Times in 0 Posts
worked fine to me with version 9.0
thx guys
  #20 (permalink)  
Old 05-27-2007, 07:09 AM
not2serious's Avatar
Pligg Donor
Pligg Version: v0.96 w/modifications
Pligg Template: Yget w/modifications
 
Join Date: Apr 2007
Location: East Coast, USA
Posts: 226
Thanks: 16
Thanked 16 Times in 15 Posts
Upgraded 9.5 successfully.

Thank You.
__________________
My Pligg Site: Critique My Art
My Arts Directory: Links 2 Arts
Closed Thread

Thread Tools
Display Modes
Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Similar Threads
Thread Thread Starter Forum Replies Last Post
Security Vulnerability Part 2 AshDigg Pligg News 17 06-17-2007 02:28 PM
Pligg Security Vulnerability - Password Change Request sunstardude Bug Report 19 06-01-2007 01:53 PM


Search Engine Friendly URLs by vBSEO 3.2.0