Log Into Your Account

Forum Index  ·  Search  ·  Edit your profile  ·  Login, Check Messages
Statistics  ·  Board Rules  ·  Forum FAQ

Search for at
Evolution-Xtreme Advanced Search


+  
Latest Site News   Next 5 >>  
 Forum   Author   Replies   Last Post 
So what happened to us? Announcements! SgtLegend 0 Tue May 06, 2014 12:32 am
SgtLegend View latest post
BF3-v2 Theme for Evolution Xtreme Released New News! Wicked 17 Sat Mar 01, 2014 8:22 am
FinalTouch68 View latest post
[THIS SITE] Speed improvements New News! SgtLegend 18 Tue Dec 17, 2013 9:43 pm
Gustine View latest post
Recent site downtime New News! SgtLegend 2 Tue Jun 04, 2013 7:34 am
megaboost View latest post
[PROGRESS] Nuke Evolution Xtreme 2.0.9e Announcements! SgtLegend 2 Sun May 27, 2012 6:25 pm
SgtLegend View latest post
   
Recent Topics   Next 15 >>  
 Forum   Author   Replies   Last Post 
Gaming Rigs Module Demo Community Announcements killigan 19 Wed Jan 22, 2014 4:39 pm
Teo View latest post
HTML Purifier Update [SECURITY PATCH] Security killigan 31 Tue Sep 17, 2013 8:10 pm
Brendan View latest post
[SECURITY] Nuke Guard Security SgtLegend 2 Sat Jan 05, 2013 12:12 am
SgtLegend View latest post
[FIX] Correct Cookie Settings (Invalid Session Error) Quick fixes killigan 107 Sun Jun 08, 2014 7:33 pm
Quiet1001 View latest post
[FIX] User registration Quick fixes SgtLegend 76 Wed Mar 12, 2014 7:21 am
Necro View latest post
Donations Xtreme v1.2 (beta) Modules travo 109 Fri Feb 14, 2014 10:09 am
megaboost View latest post
New Gaming Rigs Module Community Announcements Lonestar 16 Mon Dec 30, 2013 12:29 pm
Lonestar View latest post
DFG Hosting - My Review General Chat TimBitz 26 Tue Dec 10, 2013 12:19 pm
denellum View latest post
Downloads Module Modules killigan 11 Mon Feb 27, 2012 4:02 am
28thCDM View latest post
[POLL][FEATURE] URL rewrites for 2.0.9e Comments and Suggestions SgtLegend 7 Tue Jan 03, 2012 5:30 am
Ruphus View latest post
pagebreak in News and Content modules Modules Tchargal 2 Sun Jul 20, 2014 5:18 am
Tchargal View latest post
Photo Host issue Modules Richmc 5 Sat Jul 19, 2014 6:34 am
Richmc View latest post
Parse error help please General Support OneTop 4 Thu Jul 17, 2014 6:47 pm
OneTop View latest post
Nuke Honeypot V2 Security coRpSE 39 Wed Jul 16, 2014 6:52 pm
coRpSE View latest post
Multiple User Groups General Support pipepro 6 Mon Jul 14, 2014 1:13 pm
dknight903 View latest post

HTML Purifier Update [SECURITY PATCH]
Goto page Previous  1, 2, 3  Next
 
Post new topic    Reply to topic    printer-friendly view   Thank Post    Evolution-Xtreme Forum Index -> Security
View previous topic :: View next topic  
Author Message
SgtLegend
Site Admin
Site Admin
Lead Developer
Lead Developer
DFG Developer
DFG Developer



Gender: Gender:Male
Joined: Oct 11, 2008
Age: 23
Posts: 5130
Location: Australia
Reputation: 611.2
votes: 27
australia.png


Status: Offline
Web Control Panel: WHM
PostPosted: Sat Apr 23, 2011 2:20 am Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 If  the  setting  keeps  reverting  back  to  no  it  means  the  database  value  is  missing,  do  the  following  and  it  will  fix  it.
 
 
  1. Open  phpMyAdmin  from  your  cPanel
     
  2. Select  your  database  then  click  the  SQL  tab
     
  3. Paste  the  following  query  into  the  textarea  box  and  hit  Go
     
           
                   Code:                                        
           
                   INSERT  INTO  `nuke_evolution`  (`evo_field`,  `evo_value`)  VALUES('html_auth',  '1');

 
 PS:  Please  read  this  more  carefully  next  time  as  the  topic  clearly  states  its  a  security  patch  and  nothing  else.
Back to top
View user's profile Send private message Visit poster's website
own3mall




Joined: Dec 20, 2009
Posts: 51

Reputation: 6.4


Status: Offline
PostPosted: Sat Apr 23, 2011 1:30 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Thanks  for  the  information  SgtLegend.
 
 I  thought  a  security  patch  would  address  my  issue,  as  I  should  be  allowed  to  post  iframe  and  PayPal  link  content  without  it  being  filtered  by  the  html  purifier.   
 
 Not  to  be  rude,  as  I  do  love  Evolution  Xtreme,  but  instead  of  releasing  security  patches,  shouldn't  the  problem  of  posting  content  be  addressed?   I  hate  trying  to  add  content  to  blocks,  saving  the  source,  and  nothing  but  a  blank  show  up.
Back to top
View user's profile Send private message
SgtLegend
Site Admin
Site Admin
Lead Developer
Lead Developer
DFG Developer
DFG Developer



Gender: Gender:Male
Joined: Oct 11, 2008
Age: 23
Posts: 5130
Location: Australia
Reputation: 611.2
votes: 27
australia.png


Status: Offline
Web Control Panel: WHM
PostPosted: Sat Apr 23, 2011 7:03 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

                                                 
own3mall  wrote  (View  Post):                
Not  to  be  rude,  as  I  do  love  Evolution  Xtreme,  but  instead  of  releasing  security  patches,  shouldn't  the  problem  of  posting  content  be  addressed?  Â I  hate  trying  to  add  content  to  blocks,  saving  the  source,  and  nothing  but  a  blank  show  up.                

 
 It  has  been,  that  is  what  the  God  admin  bypass  is  for.  If  you  read  my  last  post  and  completed  it  100%  then  the  bypass  should  be  working  and  all  HTML  should  be  passed  through  Nukes  core  with  ease.
Back to top
View user's profile Send private message Visit poster's website
Sponsor
webstorm.jpg
MaSSive




Joined: May 01, 2011
Age: 34
Posts: 40

Reputation: 3
serbia.png


Status: Offline
Web Control Panel: PLESK 9.x
Test: XXX
PostPosted: Mon May 09, 2011 8:09 am Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Is  this  implemented  in  2.0.9d  or  we  need  to  update  too?
Back to top
View user's profile Send private message Visit poster's website
SgtLegend
Site Admin
Site Admin
Lead Developer
Lead Developer
DFG Developer
DFG Developer



Gender: Gender:Male
Joined: Oct 11, 2008
Age: 23
Posts: 5130
Location: Australia
Reputation: 611.2
votes: 27
australia.png


Status: Offline
Web Control Panel: WHM
PostPosted: Mon May 09, 2011 6:27 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Depending  on  when  you  downloaded  and  installed  2.0.9d  depends  on  whether  the  patch  exists,  if  you  downloaded  and  install  Nuke  after  April  2  then  it  will  have  the  patch  already  pre-added.
Back to top
View user's profile Send private message Visit poster's website
own3mall




Joined: Dec 20, 2009
Posts: 51

Reputation: 6.4


Status: Offline
PostPosted: Tue May 17, 2011 10:45 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 SgtLegend,  could  you  please  PM  me  the  post  /  code  that  used  to  be  here  allowing  all  admins  (not  just  God  Admin)  to  bypass  the  HTML  Purifier?   
 
 It  looks  like  the  original  post  containing  the  information  as  to  how  I  could  modify  Evolution  Xtreme  in  this  manner  has  been  censored  /  removed.
Back to top
View user's profile Send private message
Sponsor
phpstorm.jpg
SgtLegend
Site Admin
Site Admin
Lead Developer
Lead Developer
DFG Developer
DFG Developer



Gender: Gender:Male
Joined: Oct 11, 2008
Age: 23
Posts: 5130
Location: Australia
Reputation: 611.2
votes: 27
australia.png


Status: Offline
Web Control Panel: WHM
PostPosted: Tue May 17, 2011 11:14 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Download  the  attached  file  as  the  code  update  is  a  little  tricky,  extract  it  and  upload  class.variables.php  to  your  includes/classes/  folder
Back to top
View user's profile Send private message Visit poster's website
own3mall




Joined: Dec 20, 2009
Posts: 51

Reputation: 6.4


Status: Offline
PostPosted: Wed May 18, 2011 4:03 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Thank  you  very  much!   I'll  give  it  a  try.
Back to top
View user's profile Send private message
samoz83



Gender: Gender:Male
Joined: Aug 04, 2009
Posts: 14

Reputation: 1.8
uk.png


Status: Offline
Web Control Panel: cPanel 11.32.3
PostPosted: Thu Mar 01, 2012 6:58 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Just  wondering  will  there  be  a  release  for  the  4.4.0  version?
Back to top
View user's profile Send private message Visit poster's website
Sponsor
phpstorm.jpg
SgtLegend
Site Admin
Site Admin
Lead Developer
Lead Developer
DFG Developer
DFG Developer



Gender: Gender:Male
Joined: Oct 11, 2008
Age: 23
Posts: 5130
Location: Australia
Reputation: 611.2
votes: 27
australia.png


Status: Offline
Web Control Panel: WHM
PostPosted: Thu Mar 01, 2012 10:54 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

                                                 
samoz83  wrote  (View  Post):                
Just  wondering  will  there  be  a  release  for  the  4.4.0  version?                

 
 Should  be,  unless  there  is  a  huge  change  that  we  aren't  expecting  it  should  be  as  simple  as  just  overwriting  all  the  files  in  the  includes/HTMLPurifier  folder.
Back to top
View user's profile Send private message Visit poster's website
Ruphus



Gender: Gender:Male
Joined: Jan 24, 2010
Posts: 316
Location: Houston.Tx.
Reputation: 31.5
usa.png


Status: Offline
PostPosted: Mon Mar 05, 2012 11:15 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Gratzie!   Cool
Back to top
View user's profile Send private message Visit poster's website Yahoo Messenger MSN Messenger Visit member's Facebook: http://www.facevook.com/MoviezOnly
LordSyrus



Gender: Gender:Male
Joined: Oct 06, 2011
Posts: 18

Reputation: 2.3
blank.png


Status: Offline
PostPosted: Tue Mar 06, 2012 11:05 am Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Thanks,  upgraded  and  its  run  without  any  prob  Wink
Back to top
View user's profile Send private message Visit poster's website MSN Messenger
Sponsor
Web Hosting
JasperZ28



Gender: Gender:Male
Joined: Feb 05, 2011
Age: 45
Posts: 29

Reputation: 3.6
australia.png


Status: Offline
PostPosted: Tue May 07, 2013 7:28 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 ALL  GOOD  JUST  RE  APPEARED  ????
 
 
 Call  me  stoopid,  but  I  cannot  see  the  "attached  update  below"     :)
 
 Can  someone  give  me  a  link  to  the  update  files  for  this  ??
 
 Cheers,
 
 Jason
Back to top
View user's profile Send private message
GreggyD
Support Team
Support Team



Gender: Gender:Male
Joined: Feb 13, 2009
Age: 52
Posts: 1046
Location: Orange, Texas, By the grace of God!!
Reputation: 21141.8
votes: 11
usa.png


Status: Offline
Web Control Panel: cpanel accelerated 11.24.5
PostPosted: Tue Aug 27, 2013 9:23 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Not  sure  why  you  can't  see  it   Confused  ,  but,  here  it  is...extract  it  and  upload  class.variables.php  to  your  includes/classes/  folder.
Back to top
View user's profile Send private message Visit poster's website
Brendan




Joined: Sep 11, 2013
Posts: 4

Reputation: 0.5


Status: Offline
PostPosted: Tue Sep 17, 2013 8:09 pm Post subject: No icon Re: HTML Purifier Update [SECURITY PATCH] Reply with quote

 Ok  i  installed  update,  thanks  very  much.
Back to top
View user's profile Send private message
Sponsor
webstorm.jpg
Display posts from previous:
Post new topic  Reply to topic   printer-friendly view   Thank Post Evolution-Xtreme Forum Index ->  Security All times are UTC - 5 Hours
Goto page Previous  1, 2, 3  Next
Page 2 of 3


 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum

Related topics
 Topics   Replies   Author   Views   Last Post 
This topic is locked: you cannot edit posts or make replies. Announcement: [BETA][RELEASED] Nuke Evolution 2.0.8 0 SgtLegend 2449 Fri May 28, 2010 4:54 am
SgtLegend View latest post
No new posts Dutch Language for Xtreme V2.0 4 DFC-NightMare[NL] 2511 Wed May 01, 2013 1:18 pm
coRpSE View latest post
No new posts [Solved] Birhday mod 3.0 missing: 18 Huntergreen 8131 Mon Mar 04, 2013 7:54 pm
Teo View latest post
No new posts help upgrading to evo xtream 2.0.7 1 kirky12 2456 Thu Sep 02, 2010 10:06 am
SgtLegend View latest post
This topic is locked: you cannot edit posts or make replies. [ Poll ] Xtreme v2.0 52 Lonestar 15613 Wed Oct 14, 2009 2:51 am
SgtLegend View latest post
 




Powered by phpBB © 2001, 2006 phpBB Group
DFG-Name Theme by DFG Design ©
Forums ©

Spambot Killer
Site Map



PHP-Nuke Copyright © 2006 by Francisco Burzi.
All logos, trademarks and posts in this site are property of their respective owners, all the rest © 2006 by the site owner.
Powered by Nuke Evolution 2.0.7 - Nuke-Evolution Xtreme 2.0 Edition

[ Page Generation: 1.24 Seconds | Memory Usage: 13.3 MB ]

Do Not Click