Page 1 of 2
Are PMs confidential ?
Posted: Tue Oct 16, 2007 7:57 pm
by bmcecosse
I had assumed PM messages would be confidential to sender and receiver (they are on other forums) - but are they on this forum? Or can they be (and are they) read and possibly censored by others ?
After all PM = Private Message.
Posted: Tue Oct 16, 2007 8:13 pm
by alainmoran
For the most part I would assume that they are private, however PHPbb2 is so full of holes and exploits then anything is possible.
If there were an infinite budget then I would suggest jive forums as an alternative, however it's bally expensive ;)
Posted: Tue Oct 16, 2007 8:17 pm
by Welung666
With the message board I've started just for fun I have no access to any of the PM's. I'm sure there are ways it can be done but I can't access them.
Posted: Tue Oct 16, 2007 8:18 pm
by bigginger
Same with this board - no access to them.
Posted: Tue Oct 16, 2007 8:30 pm
by alainmoran
Yeah, most of the exploits for 2.0.10 are remote code execution, so this would mean that the hacker (or skript kiddie) would need to craft an 'app' that tookadvantage of a privelidge escalation exploit on the server, dig about in the phpbb2 config files for the DB config and then connect to the DB to read/modify your mail.
Entirely possible, however more than a little unlikley ;)
FYI: the current release of phpBB2 is 2.0.22, however in conjunction with postnuke that would be version 1.2i of pnPHPbb2 (an upgrade is probably advisable)
Posted: Tue Oct 16, 2007 8:42 pm
by alex_holden
If the forum software really has an unpatched remote code execution bug then I expect it would be trivial to gain shell access and add a back door that allows them to log in as any user.
Posted: Tue Oct 16, 2007 8:43 pm
by alainmoran
Unfortunatley there are loads of them
http://www.google.co.uk/search?q=phpbb2 ... =firefox-a
We (my work) wont even allow PHP anywhere near our servers, nevermind PHPbb2
PS: dont go clicking on those links unless you are sure your box is secured, you never know what you might end up catching ;)
Posted: Tue Oct 16, 2007 9:27 pm
by rayofleamington
I think this is completely missing the point of the question?
can they be read and possibly censored by others?
PM's are private - unless the recipient forwards it.
PM's are censored only by the swear filter.
Posted: Tue Oct 16, 2007 9:47 pm
by gatekeeper
Oh I trust the PM system. I've no problem with it. Never have done

Posted: Tue Oct 16, 2007 10:01 pm
by rayofleamington
I certainly don't "trust" it!! It has a bad habit of loosing PM's when you least expect it
This can cause all kinds of chaos
Posted: Tue Oct 16, 2007 10:05 pm
by gatekeeper
oh sorry to hear that Ray, but ive had no problems. But then again, I suppose with you being a MOD you must get huge amounts sent. Me just being a wee member (newbie) I dont get many

Posted: Tue Oct 16, 2007 10:12 pm
by bigginger
gatekeeper wrote: being a MOD you must get huge amounts sent. Me just being a wee member (newbie) I dont get many

YES! ;)
a
Posted: Tue Oct 16, 2007 10:13 pm
by gatekeeper
got the t-shirt too "A"

Posted: Tue Oct 16, 2007 10:22 pm
by bigginger
Oh yes...
a
Posted: Wed Oct 17, 2007 7:19 am
by steve4063
gatekeeper wrote:oh sorry to hear that Ray, but ive had no problems. But then again, I suppose with you being a MOD you must get huge amounts sent. Me just being a wee member (newbie) I dont get many

i used to be a Teddy Boy

when i was younger
still like the 50's music lol
(i'll go and do some work now

)
Posted: Wed Oct 17, 2007 12:47 pm
by gatekeeper
steve4063 wrote:gatekeeper wrote:oh sorry to hear that Ray, but ive had no problems. But then again, I suppose with you being a MOD you must get huge amounts sent. Me just being a wee member (newbie) I dont get many

i used to be a Teddy Boy

when i was younger
still like the 50's music lol
(i'll go and do some work now

)
Well, I come from the 50's but must admit, through the 60's & 70's I was a long haired lout

Posted: Thu Oct 18, 2007 4:41 pm
by dave1949
Well, I come from the 50's but must admit, through the 60's & 70's I was a long haired lout
is there much left now GK? i'm from the same era

Posted: Thu Oct 18, 2007 9:19 pm
by gatekeeper
dave1949 wrote:
Well, I come from the 50's but must admit, through the 60's & 70's I was a long haired lout
is there much left now GK? i'm from the same era


Hell yes!!!! just a bit shorter

Posted: Thu Oct 18, 2007 9:50 pm
by dave1949
gatekeeper wrote:dave1949 wrote:
Well, I come from the 50's but must admit, through the 60's & 70's I was a long haired lout
is there much left now GK? i'm from the same era


Hell yes!!!! just a bit shorter

me too
just a bit shorter haired lout
regards

Posted: Fri Oct 19, 2007 3:56 pm
by dave1949
is there anyway of knowing if a PM once gone from outbox has been received?
i have sent two recently with no response,
could be they dont want to reply

but dont want to be a pain chasing other site users.
anyone else had similar problems?