Topic: Is PunBB poisoned NULL byte vulnerability?

I found an report here: http://www.security.nnov.ru/Odocument207.html . It is said that critical

I am not a programmer or web developer so I cannot know whether PunBB...

Please tell me what should I do with my website (using PunBB 1.2.12)

EDIT: Code Removed

2

Re: Is PunBB poisoned NULL byte vulnerability?

Do nothing. The report appears to be incorrect and is being disputed. If this were a real vulnerability you can be sure it would have been fixed straight away.

Re: Is PunBB poisoned NULL byte vulnerability?

http://punbb.org/forums/viewtopic.php?id=13244

Re: Is PunBB poisoned NULL byte vulnerability?

http://punbb.org/forums/viewtopic.php?id=13255
The followup. Long story short: new version tongue

Re: Is PunBB poisoned NULL byte vulnerability?

The Attachment mod was also affected by this, so update the administrative plugin.