![]() |
|
#1
|
||||
|
||||
|
Earlier today we were informed of a security flaw in all versions of vBadvanced CMPS which could potentially allow a hacker to run a remote file on a server with vBa CMPS. Fortunately this exploit requires that PHP on your server to have been configured with "register_globals" enabled, and most hosting companies will not enable this since it is widely known to cause security issues. Regardless, we highly recommend that all customers upgrade to the versions of vBa CMPS that have just been released in the Members' Area here (v3.2.3 for vB3, or v4.1.3 for vB4) as soon as possible to prevent any potential damage resulting from the flaw being exploited.
__________________
Frequently Asked Questions CMPS Users Manual For vBadvanced software assistance, please use the support forums. Unsolicted PMs, IMs, and email will not be responded to. If you have a non-software related question or problem with your account, please submit a support ticket. Last edited by Brian; 01-28-2012 at 10:56 AM. |
|
#2
|
||||
|
||||
|
I have installed this and when I go to run the update it tell me
"You are already running the current version of vBadvanced CMPS!" |
|
#3
|
|||
|
|||
|
Same problem with attroll...
|
|
#4
|
||||
|
||||
|
Sorry about that. I was in such a hurry to get the new versions out that I completely forgot to update the version number in the install file. There were no changes to the database so it's not actually necessary to run the upgrade option from the vbacmps_install.php file since all it would really do is update your version number. As long as you uploaded the new files then you're patched.
The install files in the download packages have been corrected now though.
__________________
Frequently Asked Questions CMPS Users Manual For vBadvanced software assistance, please use the support forums. Unsolicted PMs, IMs, and email will not be responded to. If you have a non-software related question or problem with your account, please submit a support ticket. |
|
#5
|
|||
|
|||
|
Brian, after uploading the files the front page doesn't work.
See www.47r-squad.com Nothing appears, not sure whats going on. I had to revert the files back to 4.1.2 since 4.1.3 was not displaying the front page. Last edited by thecore762; 01-26-2012 at 09:58 PM. |
|
#6
|
|||
|
|||
|
Same problem here, a blank white page when the new files are uploaded and upgrade run
|
|
#7
|
|||
|
|||
|
At least we know it's just not just me.
|
|
#8
|
|||
|
|||
|
Quote:
3.2.3 |
|
#9
|
|||
|
|||
|
Yup same issue, blank white page after upgrade. Guess it's better than having a security issue.
|
|
#10
|
||||
|
||||
|
I had the blank front page at first too. I re-uploaded the files a couple of times and refreshed the screen and then it started working. Don't know why but it did.
|
|
#11
|
|||
|
|||
|
I tried few times but 0 success.
|
|
#12
|
||||
|
||||
|
You may want to check your cmps_index.php file. Did you overwrite it with the new one and forget to make the proper changes.
|
|
#13
|
|||
|
|||
|
I overwrited and made sure it was.
|
|
#14
|
|||
|
|||
|
This is a known issue that code cause. new one has been released for the fix. re download and reinstall. It will fix it. I was freaking out as well.
__________________
HRSB - Hampton Roads Sport Bikes |
|
#15
|
|||
|
|||
|
The new 3.2.3 release is missing the ecdownloads and/or downloads2 modules.
|
|
#16
|
|||
|
|||
|
Quote:
No such module was ever produced by Brian, those are 3rd party additions.
|
|
#17
|
|||
|
|||
|
I uploaded all the files but...
Powered by vBadvanced CMPS v3.2.2 Is this normal? |
|
#18
|
|||
|
|||
|
Quote:
You should run the upgrade process if you wanna have the new version in your products system. |
|
#19
|
|||
|
|||
|
Brian is it ok to use the old news.php ? cause I did so much customizations to it and at the moment I have not enough time to do the custom codding again.
thanks |
|
#20
|
|||
|
|||
|
Quote:
I understand that it is not necessary to run the installer right? |
![]() |
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Security Flaw - can it be fixed without a full upgrade? | PhilMcKrackon | "How Do I..." Questions | 2 | 11-05-2012 05:35 AM |
| Security Flaw - How to fix without upgrading? | BirdOPrey5 | "How Do I..." Questions | 3 | 11-02-2011 10:00 AM |
| vBa Links Security Flaw & New Releases | Brian | Announcements | 2 | 11-01-2011 06:45 AM |
| Various Bugs Discovered | John | Bugs & Issues From v2.0.0 | 2 | 07-26-2010 03:12 PM |
| vBa CMPS Security Alert! 3.2.2 & 4.0 RC1 Released | Brian | Announcements | 22 | 03-15-2010 03:48 AM |