phpdug2fix <– click to download .zip file with the fix.

I took a few minutes today to fix the cross site vulnerability in php dug 2.0 since it appears that the company that made it no longer exists.  If you’ve already got an install just download, unzip, and replace upcoming.php with what is here.  That is the only file that is changed.

If you know anyone else using this script – just send them here.

I should note that this is not my script, I probably didn’t have the right to do this legally, etc…  However, it appears that http://www.kubelabs.com is no longer maintained and there hasn’t been a fix put out for this yet.  Since it’s a well known exploit and there are a lot of copies of this script floating out there.

Tagged with:
 

One Response to PHP DUG 2.0 Vulnerability Fix

  1. mephisto says:

    Thanks for the fix, appreciated.

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>