Ben_Dover opened this issue on Feb 24, 2005 ยท 2 posts
Ben_Dover posted Thu, 24 February 2005 at 6:08 AM
Attached Link: http://www.phpbb.com/phpBB/viewtopic.php?t=265423
Since so many of us use phpBB on our sites I figured it would be alright to post this here. New version of phpBB out, here's the link to the announcement. To sum it up for you, a few exploits have been found in the avatar uploading system, closes a few other vulnerabilities, removes the visible version tag and includes a version update checker that will reside in the admin panel after installation. If you aren't going to update soon phpBB.com encourages admins of a large board to turn off remote avatars and user avatar uploading. And yes, someone at Daz has been informed. ;)