0
Welcome Guest! Login
0 items Join Now

XSS Patches available for all templates

  • Re: XSS Patches available for all templates

    Posted 16 years 7 months ago
    • Thanks BUT... I get this error message: The Parameter-File /templates/rt_versatility_ii_sienna/params.ini is Unwritable! There are no parameters for this item.

      and my page won't show... it only says: Direct Access to this location is not allowed.
  • Re: XSS Patches available for all templates

    Posted 16 years 7 months ago
    • hmm, let me check my template, if it is also effected.
    • Regards,
      Jaspal Singh Sutdhar
  • Re: XSS Patches available for all templates

    Posted 16 years 7 months ago
    • www.mydigitallife.info/2007/11/29/how-to...y-mode-in-joomla-15/

      This answers my question - as to why:

      "I get this error message: The Parameter-File /templates/rt_versatility_ii_sienna/params.ini is Unwritable! There are no parameters for this item.... and my page won't show... it only says: Direct Access to this location is not allowed."
  • Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • Hi,
      Is the patch available to download to previous club members? I have a site that we believe has suffered a hack because of this vulnerability. I have tried to source the two files that need to be patched but it looks like they are only accessible to current members, as our club membership has expired we do not have access to the templates to do a fresh download.

      As we currently do not have a requirement for any further templates at present, I would feel a bit miffed if I had to join just to get access to the security patch. can anyone point me in the right direction? Alternatively does anyone have the two following two files available for the vortex template; "rt_styleswitcher.php" and "rt_styleloader.php"

      Your assistance would gratefully be appreciated.
  • Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • All the patches are available for all members, whether active or expired. If you are using Joomla 1.0, go to Joomla > Download Templates > Joomla Club Templates > Vortex and the security patch should be there.

      If you are using Joomla 1.5, go to Joomla > Download Templates > Joomla Club Templates > Joomla 1.5 Conversions of Older Designs and download the collective patch.

      Can you not see these files in the downloader?

      Also, it is unlikely that your site was hacked due to this vulnerability so it is best to ensure that you were not hacked from some other source.

      What Joomla version are you using? When did you download the template?
    • James Spencer / Developer & Support / Hull, UK
    • Dan P.'s Avatar
    • Dan P.
    • Sr. Rocketeer
    • Posts: 205
    • Thanks: 0

    Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • What do you do when it's too late and your site has this problem? Is there a way to scan your mysql database? Any suggestions?
    • Zaini's Avatar
    • Zaini
    • Sr. Rocketeer
    • Posts: 132
    • Thanks: 0

    Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • what about hivemind?
  • Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • Hivemind is unaffected, all templates after MediaMogul are fine.
    • James Spencer / Developer & Support / Hull, UK
    • Zaini's Avatar
    • Zaini
    • Sr. Rocketeer
    • Posts: 132
    • Thanks: 0

    Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • I try to up my joomla from 1.5.6 to 1.5.7 because it is very strange..

      look my web site www.efonet.org/index_hak.php they overvrite my first page all the time...
      the change index.php and i find always index.htm ...
  • Re: XSS Patches available for all templates

    Posted 16 years 2 months ago
    • It seems like you've been hacked, check out the Security forum at forum.joomla.org
    • James Spencer / Developer & Support / Hull, UK

Time to create page: 0.071 seconds