Are PMs confidential ?
Forum rules
By using this site, you agree to our rules. Please see: Terms of Use
By using this site, you agree to our rules. Please see: Terms of Use
Are PMs confidential ?
I had assumed PM messages would be confidential to sender and receiver (they are on other forums) - but are they on this forum? Or can they be (and are they) read and possibly censored by others ?
After all PM = Private Message.
After all PM = Private Message.



-
- Minor Addict
- Posts: 845
- Joined: Tue May 11, 2004 11:56 am
- Location: Pantymwyn, Flintshire, Wales
- MMOC Member: No
-
- Minor Addict
- Posts: 845
- Joined: Tue May 11, 2004 11:56 am
- Location: Pantymwyn, Flintshire, Wales
- MMOC Member: No
Yeah, most of the exploits for 2.0.10 are remote code execution, so this would mean that the hacker (or skript kiddie) would need to craft an 'app' that tookadvantage of a privelidge escalation exploit on the server, dig about in the phpbb2 config files for the DB config and then connect to the DB to read/modify your mail.
Entirely possible, however more than a little unlikley ;)
FYI: the current release of phpBB2 is 2.0.22, however in conjunction with postnuke that would be version 1.2i of pnPHPbb2 (an upgrade is probably advisable)
Entirely possible, however more than a little unlikley ;)
FYI: the current release of phpBB2 is 2.0.22, however in conjunction with postnuke that would be version 1.2i of pnPHPbb2 (an upgrade is probably advisable)
-
- Minor Legend
- Posts: 3798
- Joined: Tue Jul 25, 2006 9:46 am
- Location: Burnley
- MMOC Member: No
If the forum software really has an unpatched remote code execution bug then I expect it would be trivial to gain shell access and add a back door that allows them to log in as any user.


Alex Holden - http://www.alexholden.net/
If it doesn't work, you're not hitting it with a big enough hammer.
-
- Minor Addict
- Posts: 845
- Joined: Tue May 11, 2004 11:56 am
- Location: Pantymwyn, Flintshire, Wales
- MMOC Member: No
Unfortunatley there are loads of them 
http://www.google.co.uk/search?q=phpbb2 ... =firefox-a
We (my work) wont even allow PHP anywhere near our servers, nevermind PHPbb2
PS: dont go clicking on those links unless you are sure your box is secured, you never know what you might end up catching ;)

http://www.google.co.uk/search?q=phpbb2 ... =firefox-a
We (my work) wont even allow PHP anywhere near our servers, nevermind PHPbb2
PS: dont go clicking on those links unless you are sure your box is secured, you never know what you might end up catching ;)
-
- Moderator
- Posts: 7679
- Joined: Fri Nov 01, 2002 2:55 pm
- Location: LEAMINGTON SPA
- MMOC Member: No
I think this is completely missing the point of the question?
PM's are private - unless the recipient forwards it.
PM's are censored only by the swear filter.
can they be read and possibly censored by others?
PM's are private - unless the recipient forwards it.
PM's are censored only by the swear filter.
Ray. MMOC#47368. Forum moderator.
Jan 06: The Minor SII Africa adventure: http://www.minor-detour.com
Oct 06: back from Dresden with my Trabant 601 Kombi
Jan 07: back from a month thru North Africa (via Timbuktu) in a S3 Landy
June 07 - back from Zwickau Trabi Treffen
Aug 07 & Aug 08 - back from the Lands End to Orkney in 71 pickup
Sept 2010 - finally gave up breaking down in a SII Landy...
where to break down next?
2013... managed to seize my 1275 just by driving it round the block
Jan 06: The Minor SII Africa adventure: http://www.minor-detour.com
Oct 06: back from Dresden with my Trabant 601 Kombi
Jan 07: back from a month thru North Africa (via Timbuktu) in a S3 Landy
June 07 - back from Zwickau Trabi Treffen
Aug 07 & Aug 08 - back from the Lands End to Orkney in 71 pickup
Sept 2010 - finally gave up breaking down in a SII Landy...
where to break down next?
2013... managed to seize my 1275 just by driving it round the block

-
- Minor Friendly
- Posts: 20
- Joined: Mon Dec 03, 2007 4:38 pm
- MMOC Member: No
-
- Moderator
- Posts: 7679
- Joined: Fri Nov 01, 2002 2:55 pm
- Location: LEAMINGTON SPA
- MMOC Member: No
-
- Minor Friendly
- Posts: 20
- Joined: Mon Dec 03, 2007 4:38 pm
- MMOC Member: No
-
- Minor Friendly
- Posts: 20
- Joined: Mon Dec 03, 2007 4:38 pm
- MMOC Member: No
-
- Minor Fan
- Posts: 430
- Joined: Tue May 17, 2005 4:07 pm
- Location: Norfolk/Suffolk
- MMOC Member: No
i used to be a Teddy Boygatekeeper wrote:oh sorry to hear that Ray, but ive had no problems. But then again, I suppose with you being a MOD you must get huge amounts sent. Me just being a wee member (newbie) I dont get many

still like the 50's music lol
(i'll go and do some work now

[img]http://i205.photobucket.com/albums/bb110/s_mitch6/3.jpg[/img]
-
- Minor Friendly
- Posts: 20
- Joined: Mon Dec 03, 2007 4:38 pm
- MMOC Member: No
Well, I come from the 50's but must admit, through the 60's & 70's I was a long haired loutsteve4063 wrote:i used to be a Teddy Boygatekeeper wrote:oh sorry to hear that Ray, but ive had no problems. But then again, I suppose with you being a MOD you must get huge amounts sent. Me just being a wee member (newbie) I dont get manywhen i was younger
still like the 50's music lol
(i'll go and do some work now)

-
- Minor Friendly
- Posts: 20
- Joined: Mon Dec 03, 2007 4:38 pm
- MMOC Member: No