The aim of this project is to produce a lightweight but reasonably secure PHP and MySQL Forum that can be easily installed to compatible web servers, and will be easily customisable for the end user as well as administrators.
Be the first to post a text review of 427BB. Rate and review a project by clicking thumbs up or thumbs down in the right column.
I have released version 2.3.2 after reading about the following yesterday: CVE-2008-2560 CVE-2008-2561 This is a security update so you should all get it updated.
CHANGES SINCE 427BB V2.3.1 ========================== - Fixed XSS vulnerability (CVE-2008-2560) - Fixed SQL include (CVE-2008-2561) CHANGES SINCE 427BB V2.3 ======================== - Fixed bug that caused links to people's profiles from the "Who's Online" and "Address Book" pages to break. - New "Private Messages" page, with more rational backend. - Vulnerability in showthread.php. - Some improvements to page generation speed. CHANGES SINCE 427BB V2.2.1 ========================== - Several major vulnerabilities fixed. - More secure authentication method. - Now uses PHP "mail()" function instead of sendmail. - Now works with "Register_Globals" off. - Should all now be valid HTML 4.01 Transitional. - A bug that was causing the forum to look odd in firefox has been fixed. CHANGES SINCE 427BB V2.2 ======================== - Install script now works. CHANGES SINCE 427BB V2.1.2 ========================== - Default style is now loaded if no style is specified. - Toned down "terminal" style a bit. - Manual configuration option has been removed. - There is now a "delete config.php" option in install.php. - A bug where only the first signature in a thread is displayed has been fixed. - Moved the "Log out" link to the bottom of the menu. - Password Protection of install.php. - Details are checked to see if they are correct before being written to config.php. - Profile page no longer displays empty fields. - "Change Avatar" link now appears only on the user's own profile. CHANGES SINCE 427BB V2.1.1 ========================== - "Re:" in PMs no longer get added on every reply. - "Ignore List" added - mail function now uses sendmail. - Uninstall function. CHANGES SINCE 427BB V2.1 ======================== - "Add user to Group" option added. - "admin" group has been removed. CHANGES SINCE 427BB V2.0.1 ========================== - User Name in "Who's Online" now links to the user profile. - Delete multiple messages feature in PM's now available. - When replying to a PM the subject is now kept and the message is quoted. - Threads "changed since last visit" are now highlighted. - Beige theme. - Separate Forum Info and Message. - IP address Blocking is now in place. - Added Safety in install Script. - Improved Search. - Address book for PM's. CHANGES SINCE 427BB V2.0 ======================== - Slashes showing in who's online which should not have been there have been removed. - "Forum Home" was not showing in who's online, it is now. - Bug in showforum.php where a "hidden" thread was shown and it should not have been now fixed. - "in reply to" didn't work on quotes, it now does. - "in reply to " has been changed to "Re:".
CHANGES SINCE 427BB V2.3 ======================== - Fixed bug that caused links to people's profiles from the "Who's Online" and "Address Book" pages to break. - New "Private Messages" page, with more rational backend. - Vulnerability in showthread.php. - Some improvements to page generation speed. CHANGES SINCE 427BB V2.2.1 ========================== - Several major vulnerabilities fixed. - More secure authentication method. - Now uses PHP "mail()" function instead of sendmail. - Now works with "Register_Globals" off. - Should all now be valid HTML 4.01 Transitional. - A bug that was causing the forum to look odd in firefox has been fixed. CHANGES SINCE 427BB V2.2 ======================== - Install script now works. CHANGES SINCE 427BB V2.1.2 ========================== - The forum no longer displays any warnings on servers which show PHP warnings. CHANGES SINCE 427BB V2.1.2 ========================== - Default style is now loaded if no style is specified. - Toned down "terminal" style a bit. - Manual configuration option has been removed. - There is now a "delete config.php" option in install.php. - A bug where only the first signature in a thread is displayed has been fixed. - Moved the "Log out" link to the bottom of the menu. - Password Protection of install.php. - Details are checked to see if they are correct before being written to config.php. - Profile page no longer displays empty fields. - "Change Avatar" link now appears only on the user's own profile. CHANGES SINCE 427BB V2.1.1 ========================== - "Re:" in PMs no longer get added on every reply. - "Ignore List" added - mail function now uses sendmail. - Uninstall function. CHANGES SINCE 427BB V2.1 ======================== - "Add user to Group" option added. - "admin" group has been removed. CHANGES SINCE 427BB V2.0.1 ========================== - User Name in "Who's Online" now links to the user profile. - Delete multiple messages feature in PM's now available. - When replying to a PM the subject is now kept and the message is quoted. - Threads "changed since last visit" are now highlighted. - Beige theme. - Separate Forum Info and Message. - IP address Blocking is now in place. - Added Safety in install Script. - Improved Search. - Address book for PM's. CHANGES SINCE 427BB V2.0 ======================== - Slashes showing in who's online which should not have been there have been removed. - "Forum Home" was not showing in who's online, it is now. - Bug in showforum.php where a "hidden" thread was shown and it should not have been now fixed. - "in reply to" didn't work on quotes, it now does. - "in reply to " has been changed to "Re:".
I have just released version 2.3 of the 427BB software after it became apparent that there were some serious security flaws in all previous versions of 427BB. These flaws have now been corrected, as well as a few more minor bugs. It is very important that anyone using this software updates it with the new version as soon as possible. Ben Brown
CHANGES SINCE 427BB V2.2.1 ========================== - Several major vulnerabilities fixed. - More secure authentication method. - Now uses PHP "mail()" function instead of sendmail. - Now works with "Register_Globals" off. - Should all now be valid HTML 4.01 Transitional. - A bug that was causing the forum to look odd in firefox has been fixed. CHANGES SINCE 427BB V2.2 ======================== - Install script now works. CHANGES SINCE 427BB V2.1.2 ========================== - The forum no longer displays any warnings on servers which show PHP warnings. CHANGES SINCE 427BB V2.1.2 ========================== - Default style is now loaded if no style is specified. - Toned down "terminal" style a bit. - Manual configuration option has been removed. - There is now a "delete config.php" option in install.php. - A bug where only the first signature in a thread is displayed has been fixed. - Moved the "Log out" link to the bottom of the menu. - Password Protection of install.php. - Details are checked to see if they are correct before being written to config.php. - Profile page no longer displays empty fields. - "Change Avatar" link now appears only on the user's own profile. CHANGES SINCE 427BB V2.1.1 ========================== - "Re:" in PMs no longer get added on every reply. - "Ignore List" added - mail function now uses sendmail. - Uninstall function. CHANGES SINCE 427BB V2.1 ======================== - "Add user to Group" option added. - "admin" group has been removed. CHANGES SINCE 427BB V2.0.1 ========================== - User Name in "Who's Online" now links to the user profile. - Delete multiple messages feature in PM's now available. - When replying to a PM the subject is now kept and the message is quoted. - Threads "changed since last visit" are now highlighted. - Beige theme. - Separate Forum Info and Message. - IP address Blocking is now in place. - Added Safety in install Script. - Improved Search. - Address book for PM's. CHANGES SINCE 427BB V2.0 ======================== - Slashes showing in who's online which should not have been there have been removed. - "Forum Home" was not showing in who's online, it is now. - Bug in showforum.php where a "hidden" thread was shown and it should not have been now fixed. - "in reply to" didn't work on quotes, it now does. - "in reply to " has been changed to "Re:".
Be the first person to add a text review.
Copyright © 2009 Geeknet, Inc. All rights reserved. Terms of Use
Thanks for your rating!
Would you also like to write a review?