:Main Menu
  Site home
Forum
IRC Client
Changelog

 
 :Login
 
Username:
Password:
Remember Me:
Register Forgot Password

 
 :Latest Forum Posts
 
Threads Latest Post
Cybershade CMS 0.2b... Lockdown
Hey everyone Lockdown
greetz xLink
Your Favorite Distro data
Um... xLink

 
 :CMS Statistics
 
Guests Online: 4
Users Online: 1
Total Users Online: 5
Users logged in during the past 24 hours: 4
Registered Users: 87
Last Registered User: 134xt3r

 
 :Who Is Online
  xLink, Google[bot] , MSN[bot]

User Key: Admin | Dev | Mod | User |
 
 :Random Affiliates
 
DarkCode
Cybershade Inc
GoNullYourself
x0rg
Hacking Fundamentals

 
 
 
 :Announcement
 
Welcome to Cybershade v0.6.5!!

As part of focusing totally on coding, there are a TON of new forum categories, You can request for more in the Feature Requests Section of the forum.
 
 
 
 :Main Site 
 
Welcome to Cybershade Inc Guest
Friday 21st November 17:16:23 pm

Post Title: Cybershade CMS 0.2b Remote File Inclusion Vulnerability

Ok so earlier yesterday this got posted to milw0rm...


    Quote
    
Script Name : Cybershare CMS

Download : http://sourceforge.net/project/downloading.php?group_id=213056&use_mirror=surfnet&filename=cybershade_0.2b-DEV.zip&40561526

Error :
include $ CMS_ROOT."core/core.php";

Vul. Code : http://[site]/[path]/core/includes.php?CMS_ROOT=[Shell]

Thanks : Kezzap66345 - Septemb0x

# milw0rm.com [2008-10-31]


Now, My Immediate response was one of great humour, as i laughed my ass off!
Now, Funny things About this..

1. The Exploit never was valid.. like ever, as $CMS_ROOT was never a $_GET variable..
2. The Exploit is relased a YEAR after version "0.2b" was released!!
3. Because the fact Ive hardly kept the same file structure in creating the CMS, the file 'includes.php' hasnt existed since 0.3
4. Also the most amusing out of the lot, is the amount of people trying the exploit on a CMS +0.4.5 versions ahead

anyways all im going to say to that really, is thanks for the advertisement. Because that really is all you caused there...

oh and someone cant spell..atleast if your going to post an exploit make sure you get the software name correctly

    Quote
    
Script Name : Cybershare CMS

Comments : 3 News Posted By xLink on 2nd November 08:38pm

Post Title: CMS 0.7.0

Well with the rewrite done, we still need to rewrite the majority of the modules for the new backend layout and stress test it, but its looking to be a lot better and faster than this is. the forum especially should be a lot faster and hopefully there will be a lot more functionality. Apparently the permissions system and the forum took a little longer to rewrite than was first thought, and FriXioN is also taking the oppotunity to upgrade the login system and the registration system too. This new permissions system allows us to be a lot more flexable with how we set the site up now.

Another pretty useful feature FriXioN has added to the update is the account tracker, where you will be able to see who else is logged in to your user account, and optionally log them out and the like. You will also be able to see where they went and what they did whilst on the site. This specific system will be blocked by a PIN so even if they get your password then cant really do much damage to your profile settings and the like.

Im also looking to upgrade the GUI of the site too, so its not just static forms and the like, which means the site will be using a lot more AJAX functionality. Ive also tried my hardest to make this template work the same in FF and IE but as usual IE fails me so you will get a nice error msg now if your using IE.

We still have a lot to get converted to the new system and on top of that its still got to be tested and make sure its bug free and works just how it should. After the update is finished we will be adding the pastebin(if it dosent get added with the update) and the codebase.

Keep watching this page for more updates, and I shall try and keep you guys up to date as were developing, but for the mean time im keeping the rest of the new features a secret. Give you guys something to do when it goes live

~xLink

Comments : 0 News Posted By xLink on 25th October 04:26pm

Post Title: Hmmmm

Well as it stands, with the next update due any time soon, I have come across some performance issues, and well because of this, I'm going to be rewriting the majority of the back end of the CMS, this should allow me to add a more unique feel to some of the sections of the site. Most of the front end, e.g. the GUI and such like should pretty much stay the same, I will be adding some extra touches here and there to some of the template files.

One of the major systems being rewritten will be the Forum, so far its been more of a pain in the backside than the bbcode was, and to be honest that shouldn't really be. Along with this rewrite we will also be getting a new permissions system (this is what swayed the decision about doing the rewrite). This will enable us to better control what certain users or groups of users can do with the site better.

As always suggestions are appreciated. I also have no objections to you advertising the site, though please refrain from spamming other forums and using 'dodgy' methods. We don't want a bad reputation before we have even properly launched now do we

Other than that, thanks goes out to those of you who continue to come back. Though it would be nice to have some activity on the forum

~xLink

[edit]
As part of the update ive added a lot more forum categories.

Comments : 1 News Posted By xLink on 15th September 11:59pm

Post Title: 50 Members

Well we hit 50 members today, might not seem much, but to say I havent really been on the site too much or advertised it too much due to coding it in most of my spare time, i feel its really good

So a big thanks to those of you who have helped by spreading the word about Cybershade, and also to those of you who have sat and watched this little project be reborn a lot . Ii hope you will continue to spread words and watch so as we grow with members and features.

Comments : 1 News Posted By xLink on 14th September 11:45pm

Post Title: Updates

Ok so as previously mentioned, Cybershade will now become a fully coding and designing based site, the preperations for this are nearly complete, with the next update, the pastebin will be up, along with the codebase shortly after and then hopefully the article system after that.

The reason this update is taking so long, is the new permissions system, FriXioN is totally redoing the permissions across the cms, which will enable us to assign permissions to certain users and also groups of users also. Were also implementing a special set of features which Im going to keep back from this post untill a later date. Anyways as of yet were not looking at a release date, but hopefully it will all be up and running within the next week or so.

As well as the permissions system we also have a few little tweaks to other systems around the site, and implementing a few other suggestions.

As always any suggestions you would like to put forward please post them in the forum.

[Edit] Just fixed and uploaded a hotfix for the forum, the views wernt being counted correctly. -They are now

Comments : 2 News Posted By xLink on 11th September 03:25pm

 
 
 
 :Advertisements
 
 
 
 
 :Copyright
 
Cybershade Inc Powered By Cybershade CMS V0.6.5
Theme Vone by xLink V1.0 | English language Pack By xLink