| Quote:
|
Recently, a severe issue was discovered in My_eGallery for PostNuke (see http://www.securityfocus.com/archive/1/345790 and http://mods.postnuke.com/modules.php?op=modload&name=News&file=article&sid=2048 for more information).
This issue exists as well in the PHPNuke version of My_eGallery. After Patrick (marsishere) stopped development on My_eGallery, I took over My_eGallery for PostNuke and maintain it at http://lottasophie.sourceforge.net/. A patched version as well as a hotfix for My_eGallery for PostNuke is available there as well.
It took me a lot of searching to find a My_eGallery for PHPNuke until I discovered a download at http://ruleit.co.uk/nuke/. I had a look inside the code and there are a lot of security issues like the one described.
As I do not intend to maintain My_eGallery for PHPNuke and the number of the places to be fixed is too high, I am looking for anyone maintaining My_eGallery for PHPNuke, so I can provide detailed information about the issue and the way to fix them.
|