2.0.0 刚发布不久,就发现漏洞
不过补丁的发布速度也很快
Invision Power Board 2.0.1 has been released to the download area.
This release includes a minor security update to "login.php" which was reported earlier today.
We are still scheduled to make a maintenance release within the next few weeks and this release contains no other fixes.
Customers may wish to update the files listed below to ensure that their board is up-to-date and compatible with the newly released IPS Chat.
sources/admin/ad_stylesheets.php
sources/classes/class_display.php
sources/lib/chat04_functions.php
sources/login.php
sources/misc/contact_member.php
There is no need to run the upgrade system - just remember to upload "index.php" and "admin.php" to update your version number.
Your IPB download is available from the Client Center under "Purchased Services"
The fixed version of "login.php" is attached.
下载:http://forums.invisionpower.com/index.php?act=Attach&type=post&id=4357
引用:http://forums.invisionpower.com/index.php?showtopic=150100