<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Top 10 Open Source Forums &#8211; 12 Months of Vulnerabilities</title>
	<atom:link href="http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/</link>
	<description>Security Tools and Tips</description>
	<lastBuildDate>Fri, 18 Nov 2011 18:51:25 -0600</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.3</generator>
	<item>
		<title>By: What Is Social Media and Why Do We Need It? &#124; eWiiZone.com</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-82265</link>
		<dc:creator>What Is Social Media and Why Do We Need It? &#124; eWiiZone.com</dc:creator>
		<pubDate>Sat, 16 Oct 2010 07:13:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-82265</guid>
		<description>[...] Dragos Lungu Dot Com – Security Tools and Tips [...]</description>
		<content:encoded><![CDATA[<p>[...] Dragos Lungu Dot Com – Security Tools and Tips [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dragos Lungu</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81628</link>
		<dc:creator>Dragos Lungu</dc:creator>
		<pubDate>Tue, 10 Nov 2009 09:17:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81628</guid>
		<description>Danke ! :)</description>
		<content:encoded><![CDATA[<p>Danke ! <img src='http://www.dragoslungu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: HansDietrich</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81625</link>
		<dc:creator>HansDietrich</dc:creator>
		<pubDate>Mon, 09 Nov 2009 07:47:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81625</guid>
		<description>Glückwunsch zum neuen Blog!</description>
		<content:encoded><![CDATA[<p>Glückwunsch zum neuen Blog!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: shuctinfith</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81571</link>
		<dc:creator>shuctinfith</dc:creator>
		<pubDate>Sun, 16 Aug 2009 16:06:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81571</guid>
		<description>Hi,

I am new to www.dragoslungu.com and just want to introduce myself.

Thanks</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>I am new to <a href="http://www.dragoslungu.com" rel="nofollow">http://www.dragoslungu.com</a> and just want to introduce myself.</p>
<p>Thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MichaellaS</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81525</link>
		<dc:creator>MichaellaS</dc:creator>
		<pubDate>Mon, 20 Jul 2009 15:49:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81525</guid>
		<description>tks for the effort you put in here I appreciate it!</description>
		<content:encoded><![CDATA[<p>tks for the effort you put in here I appreciate it!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BlueHornet</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81522</link>
		<dc:creator>BlueHornet</dc:creator>
		<pubDate>Fri, 17 Jul 2009 20:45:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81522</guid>
		<description>This look interesting,so far.
If there&#039;s anyone else here,  let me know.
Oh, and yes I&#039;m a real person LOL.

Bye,</description>
		<content:encoded><![CDATA[<p>This look interesting,so far.<br />
If there&#8217;s anyone else here,  let me know.<br />
Oh, and yes I&#8217;m a real person LOL.</p>
<p>Bye,</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: lyndon</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81517</link>
		<dc:creator>lyndon</dc:creator>
		<pubDate>Sun, 12 Jul 2009 14:13:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81517</guid>
		<description>thanx for the info.. still not have idea wat i will use forum app. but maybe i will use phbb or vbulletin.. wat u guess guys? thanx</description>
		<content:encoded><![CDATA[<p>thanx for the info.. still not have idea wat i will use forum app. but maybe i will use phbb or vbulletin.. wat u guess guys? thanx</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Runescape_hater</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81482</link>
		<dc:creator>Runescape_hater</dc:creator>
		<pubDate>Mon, 22 Jun 2009 00:08:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81482</guid>
		<description>Hey i just wanted to say hi to everyone.</description>
		<content:encoded><![CDATA[<p>Hey i just wanted to say hi to everyone.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TroyBC</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81450</link>
		<dc:creator>TroyBC</dc:creator>
		<pubDate>Sun, 07 Jun 2009 16:06:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81450</guid>
		<description>

Mendota Heights
    USA
            What is the best ecommerce platform - shopping cart? ...If you thinking osCommerce.
I dont thing so, as you can see X-cart the most popular eCommerce platform.
        Just checked my WEBS:
http://www.istockvanities.com/
http://www.istocktile.com/
http://www.istocklighting.com/
http://www.istockfurniture.com/

    I&#039;ll really appreciate for yours attention. 
    
  
</description>
		<content:encoded><![CDATA[<p>Mendota Heights<br />
    USA<br />
            What is the best ecommerce platform &#8211; shopping cart? &#8230;If you thinking osCommerce.<br />
I dont thing so, as you can see X-cart the most popular eCommerce platform.<br />
        Just checked my WEBS:<br />
<a href="http://www.istockvanities.com/" rel="nofollow">http://www.istockvanities.com/</a><br />
<a href="http://www.istocktile.com/" rel="nofollow">http://www.istocktile.com/</a><br />
<a href="http://www.istocklighting.com/" rel="nofollow">http://www.istocklighting.com/</a><br />
<a href="http://www.istockfurniture.com/" rel="nofollow">http://www.istockfurniture.com/</a></p>
<p>    I&#8217;ll really appreciate for yours attention.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dreamluverz</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-81405</link>
		<dc:creator>dreamluverz</dc:creator>
		<pubDate>Wed, 06 May 2009 15:51:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-81405</guid>
		<description>Thanks for sharing. I&#039;m looking for a good forum software to install and good thing you have this information.  But seems like you don&#039;t have SMF here?</description>
		<content:encoded><![CDATA[<p>Thanks for sharing. I&#8217;m looking for a good forum software to install and good thing you have this information.  But seems like you don&#8217;t have SMF here?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; links for 2008-05-16 &#124; Paul Cowles</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-54398</link>
		<dc:creator>&#187; links for 2008-05-16 &#124; Paul Cowles</dc:creator>
		<pubDate>Tue, 03 Jun 2008 00:17:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-54398</guid>
		<description>[...] Top 10 Open Source Forums - 12 Months of Vulnerabilities &#124; Dragos Lungu Dot Com (tags: opensource forums) [...]</description>
		<content:encoded><![CDATA[<p>[...] Top 10 Open Source Forums &#8211; 12 Months of Vulnerabilities | Dragos Lungu Dot Com (tags: opensource forums) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dragos Lungu</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-133</link>
		<dc:creator>Dragos Lungu</dc:creator>
		<pubDate>Mon, 11 Jun 2007 14:43:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-133</guid>
		<description>Thanks dre, I will test some of these apps pretty soon and I&#039;ll post the results. As Ory pointed out, there are no &quot;Zero vulnerability&quot; applications out there; sometimes  it&#039;s just harder to find those bugs :)</description>
		<content:encoded><![CDATA[<p>Thanks dre, I will test some of these apps pretty soon and I&#8217;ll post the results. As Ory pointed out, there are no &#8220;Zero vulnerability&#8221; applications out there; sometimes  it&#8217;s just harder to find those bugs <img src='http://www.dragoslungu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dre</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-126</link>
		<dc:creator>dre</dc:creator>
		<pubDate>Sun, 10 Jun 2007 22:06:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-126</guid>
		<description>OWASP runs vBulliten (this costs money btw), but then again - it also runs Wordpress for blogs and MediaWiki for the main site and these aren&#039;t exactly sure web applications.

Andrew van der Stock (of OWASP fame) wrote his own secure forum software as well: http://www.ultimabb.com/

PunBB, SMF (Simple Machines), and Vanilla also have very good reputations for free forum software.

For web-anything, I normally suggest JSPWiki (or something very similar) fronted by mod_security.  I&#039;d like to see JSPWiki or something very similar re-written in HDIV Struts with proper use of Validator everywhere.

The most important aspect is to keep your fourm software up-to-date, especially after known vulnerabilities are released into the public.</description>
		<content:encoded><![CDATA[<p>OWASP runs vBulliten (this costs money btw), but then again &#8211; it also runs WordPress for blogs and MediaWiki for the main site and these aren&#8217;t exactly sure web applications.</p>
<p>Andrew van der Stock (of OWASP fame) wrote his own secure forum software as well: <a href="http://www.ultimabb.com/" rel="nofollow">http://www.ultimabb.com/</a></p>
<p>PunBB, SMF (Simple Machines), and Vanilla also have very good reputations for free forum software.</p>
<p>For web-anything, I normally suggest JSPWiki (or something very similar) fronted by mod_security.  I&#8217;d like to see JSPWiki or something very similar re-written in HDIV Struts with proper use of Validator everywhere.</p>
<p>The most important aspect is to keep your fourm software up-to-date, especially after known vulnerabilities are released into the public.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Beehive Zero Vulnerabilities - Myth BUSTED &#124; Dragos Lungu Dot Com</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-122</link>
		<dc:creator>Beehive Zero Vulnerabilities - Myth BUSTED &#124; Dragos Lungu Dot Com</dc:creator>
		<pubDate>Sun, 10 Jun 2007 14:53:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-122</guid>
		<description>[...] gets all the credit for this one and, again, I updated the forum vulnerabilities post [...]</description>
		<content:encoded><![CDATA[<p>[...] gets all the credit for this one and, again, I updated the forum vulnerabilities post [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BBpress XSS vulnerability &#124; Dragos Lungu Dot Com</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-96</link>
		<dc:creator>BBpress XSS vulnerability &#124; Dragos Lungu Dot Com</dc:creator>
		<pubDate>Thu, 07 Jun 2007 11:05:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-96</guid>
		<description>[...] Ory Segal pointed out in his comment on the forum vulnerabilities post , the BBpress authentication page (bb-login.php) is home of a XSS [...]</description>
		<content:encoded><![CDATA[<p>[...] Ory Segal pointed out in his comment on the forum vulnerabilities post , the BBpress authentication page (bb-login.php) is home of a XSS [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ory Segal</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-65</link>
		<dc:creator>Ory Segal</dc:creator>
		<pubDate>Sun, 03 Jun 2007 13:55:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-65</guid>
		<description>I&#039;ve sent you an email, let me know what you make of it</description>
		<content:encoded><![CDATA[<p>I&#8217;ve sent you an email, let me know what you make of it</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dragos Lungu</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-61</link>
		<dc:creator>Dragos Lungu</dc:creator>
		<pubDate>Fri, 01 Jun 2007 11:45:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-61</guid>
		<description>Hi Ory, 
well, the list is based on secunia public vulnerabilities disclosures and I didn&#039;t inted to go into 0 day exploits. Now that you made me curious , I looked into bb-login.php and I couldn&#039;t find an exploitable XSS  :( 

I&#039;m posting the bb-login.php file : 

&lt; ?php
require(&#039;./bb-load.php&#039;);

$ref = wp_get_referer();

if ( 0 === strpos($ref, bb_get_option( &#039;uri&#039; )) ) {
	$re = $_POST[&#039;re&#039;] ? $_POST[&#039;re&#039;] : $_GET[&#039;re&#039;];
	if ( 0 !== strpos($re, bb_get_option( &#039;uri&#039; )) )
		$re = $ref . $re;
} else
	$re = bb_get_option(&#039;uri&#039;);

nocache_headers();

if ( isset( $_REQUEST[&#039;logout&#039;] ) ) {
	bb_logout();
	wp_redirect( $re );
	exit;
}

if ( !bb_is_user_logged_in() &amp;&amp; !$user = bb_login( @$_POST[&#039;user_login&#039;], @$_POST[&#039;password&#039;] ) ) {
	$user_exists = bb_user_exists( @$_POST[&#039;user_login&#039;] );
	$user_login  = user_sanitize ( @$_POST[&#039;user_login&#039;] );
	$redirect_to = wp_specialchars( $re, 1 );
	bb_load_template( &#039;login.php&#039;, array(&#039;re&#039;, &#039;user_exists&#039;, &#039;user_login&#039;, &#039;redirect_to&#039;, &#039;ref&#039;) );
	exit;
}

wp_redirect( $re );
?&gt;

The user_sanitize function permits only a-z A-Z and 0-9 , so no luck with the username string. 
The $re parameter is appended to the current URL and although it seems an easy catch for a forceful redirect, the appended string starts with / which sucks . 

So please let me know which vulnerability have you spotted :) . Please email me (dragos@dragoslungu.com) or post it here and I will edit the post to reflect your findings.  

I would  really appreciate .</description>
		<content:encoded><![CDATA[<p>Hi Ory,<br />
well, the list is based on secunia public vulnerabilities disclosures and I didn&#8217;t inted to go into 0 day exploits. Now that you made me curious , I looked into bb-login.php and I couldn&#8217;t find an exploitable XSS  <img src='http://www.dragoslungu.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' />  </p>
<p>I&#8217;m posting the bb-login.php file : </p>
<p>< ?php<br />
require('./bb-load.php');</p>
<p>$ref = wp_get_referer();</p>
<p>if ( 0 === strpos($ref, bb_get_option( 'uri' )) ) {<br />
	$re = $_POST['re'] ? $_POST['re'] : $_GET['re'];<br />
	if ( 0 !== strpos($re, bb_get_option( 'uri' )) )<br />
		$re = $ref . $re;<br />
} else<br />
	$re = bb_get_option('uri');</p>
<p>nocache_headers();</p>
<p>if ( isset( $_REQUEST['logout'] ) ) {<br />
	bb_logout();<br />
	wp_redirect( $re );<br />
	exit;<br />
}</p>
<p>if ( !bb_is_user_logged_in() &#038;&#038; !$user = bb_login( @$_POST['user_login'], @$_POST['password'] ) ) {<br />
	$user_exists = bb_user_exists( @$_POST['user_login'] );<br />
	$user_login  = user_sanitize ( @$_POST['user_login'] );<br />
	$redirect_to = wp_specialchars( $re, 1 );<br />
	bb_load_template( 'login.php', array('re', 'user_exists', 'user_login', 'redirect_to', 'ref') );<br />
	exit;<br />
}</p>
<p>wp_redirect( $re );<br />
?></p>
<p>The user_sanitize function permits only a-z A-Z and 0-9 , so no luck with the username string.<br />
The $re parameter is appended to the current URL and although it seems an easy catch for a forceful redirect, the appended string starts with / which sucks . </p>
<p>So please let me know which vulnerability have you spotted <img src='http://www.dragoslungu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  . Please email me (dragos@dragoslungu.com) or post it here and I will edit the post to reflect your findings.  </p>
<p>I would  really appreciate .</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ory Segal</title>
		<link>http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/comment-page-1/#comment-55</link>
		<dc:creator>Ory Segal</dc:creator>
		<pubDate>Thu, 31 May 2007 12:59:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.dragoslungu.com/2007/05/30/top-10-open-source-bulletin-boards-12-months-of-vulnerabilities/#comment-55</guid>
		<description>Hello Dragos,

Hold the press - from a 2 minutes review of BBPress (which in your research yielded 0 vulnerabilities), I can already tell you that the login page contains a XSS vulnerability. (I am talking about the latest version of BBPress here).

Check out the source code of bb-login.php, and you&#039;ll figure it out. (it&#039;s exploitable).
Bottom line, I haven&#039;t seen a single BB app lately, that doesn&#039;t contain any vulnerabilities :-)

Hope this helps,
-Ory Segal</description>
		<content:encoded><![CDATA[<p>Hello Dragos,</p>
<p>Hold the press &#8211; from a 2 minutes review of BBPress (which in your research yielded 0 vulnerabilities), I can already tell you that the login page contains a XSS vulnerability. (I am talking about the latest version of BBPress here).</p>
<p>Check out the source code of bb-login.php, and you&#8217;ll figure it out. (it&#8217;s exploitable).<br />
Bottom line, I haven&#8217;t seen a single BB app lately, that doesn&#8217;t contain any vulnerabilities <img src='http://www.dragoslungu.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>Hope this helps,<br />
-Ory Segal</p>
]]></content:encoded>
	</item>
</channel>
</rss>

