Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: [Full-disclosure] Security of phpBB |
|---|---|
| Date: | Mon, 20 Jun 2005 08:30:28 -0400 (EDT) |
Hi, I am new to this list and to security in general so please excuse my question. A friend told me that our forum software phpBB is not very secure and told me about this. Where can I get information on that? What must I do
www.securityfocus.com has an archive of just about every phpbb issue. You probably also want to check the vendor changelog at www.phpbb.com.
to make it secure?
Uninstall it. In all seriousness I'd say phpbb and phpnuke have some of the worst track records for a web application ever. - admin@cgisecurity.com http://www.cgisecurity.com
Thank you. Kind regards, Tom Edwards, Manager _________________________________________________________________ MSN Hotmail. Anmelden und gewinnen! http://www.msn.de/email/webbased/ Ihre Chance, eines von 10 T-Mobile MDA II zu gewinnen! _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [Full-disclosure] Security of suphp, Bernd Wurst |
|---|---|
| Next by Date: | Re: [Full-disclosure] Security of phpBB, Moritz Naumann |
| Previous by Thread: | [Full-disclosure] Security of phpBB, Tom Edwards |
| Next by Thread: | Re: [Full-disclosure] Security of phpBB, Moritz Naumann |
| Indexes: | [Date] [Thread] [Top] [All Lists] |