Joomla!
http://forum.joomla.org/

[UPGRADE AVAIL.] Joomla Colophon
http://forum.joomla.org/viewtopic.php?f=296&t=81587
Page 1 of 1

Author:  Elpie [ Mon Jul 31, 2006 1:26 pm ]
Post subject:  [UPGRADE AVAIL.] Joomla Colophon

Remote file inclusion in admin.colophon.php. Vulnerable version = 1.2, other versions may also be affected.

Author:  brian [ Mon Jul 31, 2006 1:48 pm ]
Post subject:  Re: Joomla Colophon

http://secunia.com/advisories/21288/

Author:  infograf768 [ Mon Jul 31, 2006 2:16 pm ]
Post subject:  Re: Joomla Colophon

Changed ttle to reflect Secunia advisory.

Developper's site has beed defaced btw:
http://www.sirjoe.it/components/com_jd- ... k.php?p=77

Author:  RobS [ Tue Aug 01, 2006 6:15 am ]
Post subject:  Re: Joomla Colophon

Thanks, adding to the list.

Author:  elmoch [ Wed Aug 02, 2006 11:15 pm ]
Post subject:  Re: Joomla Colophon

You can use JM-Credits instead of Colophon. JM-Credits doesn't have that vulnerability and is much more configurable than Colophon.

I hope you like it! ;)

Author:  infograf768 [ Thu Aug 03, 2006 6:11 am ]
Post subject:  Re: Joomla Colophon

JM is MY trademark (short for Jean-Marie)  :laugh: :laugh: :laugh:

(just a French joke, totally OT)

Author:  kaizen [ Tue Aug 29, 2006 11:33 pm ]
Post subject:  Re: [ABANDONED] Joomla Colophon

Colophon is now in version 1.3.1 which includes fixes for the vulnerabiilities listed as well as some other updates.  Site, which was NEVER 'defaced' BTW,  is now back up and is in the process of being fully restored.

I have not abandoned this project or the other works at SchoolastechWorks, which include BadWords2 and I hope to get back on my feet after a extremely trying string of personal hardships and two tragic losses.

I'd appreciate it if the mods would update the listing as appropriate.

Page 1 of 1 All times are UTC
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group
http://www.phpbb.com/