the FLASH tag in an important BUG:
BBCode tag of a 3.0.7 version can be used to execute JavaScript to cause the cross site script vulnerability
to open your forum directory, /includes/ message_parser.php file
search to the JavaScript / / Apply the same size checks on flash files as on images[/code]
CH (`'$#i''. Get_preg_expression ('www_url').'$#i', $in))
{
return'.#91; flash='. $width.' $height.
the original text as follows:
Hi everyone,
We are pleased to announce the. A security issue in the previous version affecting boards which have the. This problem in 3.0.7, please go to line 354 in includes/message_parser.php, and right. Br / > if (! Preg_match ('url'),'$#i', $in).Amp; amp;.Amp; amp;
>'s. Ode]
This will not fix the problem in already existing posts. PhpBB's root directory and access it directly. A new version of the. RS circumvent the captcha in some cases. A thank you goes to. Ns to phpBB 3.0.8. Submissions to our trackers for older versions will. Able.
We would also like to say a special thank you to. Er, Richard Foote, RMcGirr83, Rob House, SA007, Tabitha Backoff, Thatbitextra and Yuriy. Gelog[/url:2olyk5kw].
Installation instructions
A short explanation of how to do a conversion. #require:2olyk5kw]list of requirements[/url:2olyk5kw] on our Downloads page.
Security
If you find any. Tomatic update (white screens, timeouts, etc.) we recommend using the.Quot; Contains changes from previous release to this release.
Changed Files Only:
Please ensure you read the INSTALL and README documents in. R />Our [url=http://www.phpbb.com/files/archive/: 2olyk5kw]release archive[/url:2olyk5kw] provides all packages we build. If you E/phpBB-3.0.8.zip:2olyk5kw]phpBB-3.0.8.zip[/url:2olyk5kw] (Full Package)
md5sum: 81de73308603abee863be7552c7caac7
[url=http://www.phpbb.com/files/release/phpBB-3.0.8.tar.bz2:2olyk5kw]phpBB-3.0.8.tar.bz2[/url:2olyk5kw] (Full Package)
md5sum: 7b20c8377364fc0458a241e232a019d0
md5sum: 75308c5c4e8d1c17ca8faa30687f1b42
[url=http://www.phpbb.com/files/release/phpBB-3.0.8-patch.tar.bz2:2olyk5kw] phpBB-3.0.8-patch.tar.bz2[/url:2olyk5kw] (Patch Files) md5sum: 295a8bf9bfd3f90d715ecd642b3aa773
[url=http://www.phpbb.com/files/release/phpBB-3.0.8-files.zip:2olyk5kw]phpBB-3.0.8-files.zip[/url:2olyk5kw] (Changed Files)
md5sum: 03e1ad263c697f2b2da0632b1138aaf3
[url=http://www.phpbb.com/ files/release/phpBB-3.0.8-files.tar.bz2:2olyk5kw ]phpBB-3.0.8-files.tar.bz2[/url:2olyk5kw] (Changed Files)
md5sum: 31632678f94ccb677c2fda40fc91123a
[url=http://www.phpbb.com/files/release/phpBB-3.0.7-PL1_to_3.0.8.zip:2olyk5kw]phpBB-3.0.7-PL1_to_3.0.8.zip[/url:2olyk5kw] (Automatic Update Package from 3.0.7-PL1) 645362ff08bcea67ec3
[url=http://www.phpbb.com/files/release/phpBB-3.0.7-PL1_to_3.0.8.tar.bz2:2olyk5kw]phpBB-3.0.7-PL1_to_3.0.8.tar.bz2[/url:2olyk5kw] (Automatic Update Package from 3.0.7-PL1)
md5sum: 351e9f24fd7d3e291eade22484340d22
[url=http://www.phpbb.com/files/release/phpBB-3.0.7 -PL1_to_3.0.8-codechanges.zip:2olyk5kw]phpBB-3.0.7-PL1_to_3.0.8-codechanges.zip[/url:2olyk5kw] (Language and Style Code Changes)
md5sum: 4503e3959d39a6bd9d80bbe2e2b9d0a4
[url=http://www.phpbb.com/files/release/ phpBB-3.0.7-PL1_to_3.0.8-codechanges.tar.bz2:2olyk5kw]phpBB-3.0.7-PL1_to_3.0.8- Codechanges.tar.bz2[/url:2olyk5kw] (Language and Style Code Changes)
md5sum: b088ba2a16b456b4f7e764f381c4a3b7
[url=http://www.phpbb.com/files/release/phpBB-3.0.8.webpi.zip:2olyk5kw]phpBB-3.0.8.webpi.zip[/url:2olyk5kw] 891a8f772e85fbd47
Download.Amp; amp; Documentation
[url=http://www.phpbb.com/downloads/: 2olyk5kw]phpBB Downloads[/url:2olyk5kw]
[url=http://www.ohloh.net/projects/phpbb:2olyk5kw]phpBB Projects page @ page @ Yk5kw]phpBB 3 Documentation[/url:2olyk5kw]
[url=http://www.phpbb.com/phpBB/viewforum.php? F=46:2olyk5kw]phpBB 3 support forum[/url:2olyk5kw]
[url=http://www.phpbb.com/bugs/phpbb3/: 2olyk5kw]phpBB 3 bug tracker[/url:2olyk5kw] L:2olyk5kw]
[url=http://wiki.phpbb.com/: 2olyk5kw]phpBB Code Wiki[/url:2olyk5kw]