I just uploaded gCards version 1.45 - you can get it here. This should hopefully fix all of the issues people had with the authentication. Basically when it was written I used a mySQL specific function called ‘password’ for creation of and validation of the users password. MySQL changed this in one of there versions - 4.x I think, so anyone using newer versions of mySQL couldn’t quite login to the application. I’ve updated gCards to store the password as an md5 hash of the real password, so that should hopefully stand the test of time, as its not specific to any mySQL version…
For users upgrading…it is very important to note that upon running the setup.php file, all passwords will be set to the same as the username. For example, if i had gCards 1.44 with a username of bobbyjoe and a password of schweenard, after running setup.php I would login with bobbyjoe/bobbyjoe. Makes sense?
I did very minimal testing, but it all seems to work just fine on my home computer and at my web host (which runs mySQL 5). Let me know here if you find any problems.
Enjoy
Greg
March 23rd, 2006 at 9:33 am
Hello!
I want to download the new version of gcards (v 1.45), but the downloadlink is dead. Is there a possibilty to get this script on another way? I hope the Download will comeback and i revisit the next time
Grtz
March 23rd, 2006 at 10:06 am
The link should work now. Somehow a couple directory names on my site seemed to change…without my knowing. Better look into that…but for now, they’re changed back…
Greg
March 27th, 2006 at 12:34 am
Hi Greg. Looks like your Gcards page http://www.gregphoto.net/gcards/index.php has been hacked in the download area.
J
March 27th, 2006 at 12:59 am
I was googling to find answer to a gcards support questions I have (bold/italic formatting doesn’t display in Firefox) when I found this stuff on exploits of gcards. All russian to me. but the login hack seems a bit serious. Dont’ know if you track this stuff.
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2006-1347
http://www.security.nnov.ru/files/gcardsex.php
Thanks for gcards - powerful and simple.
John
March 27th, 2006 at 1:45 am
Composing bugs. Seems that my formatting bugs are not Firefox dependent. Although behaviour seems a little inconsistent. italic never seems to work. Font sometimes. Links never. I tried upgrading to 2.2 of FCK but same problems.
??
Hope you’ll get a support forum up again soon. In the meantime any help appreciated.
Thanks,
John
March 27th, 2006 at 10:01 pm
John
Thanks for the heads up on the vulnerability posting and on the hacking of my site. I’ve fixed both!
As for the formatting issues within FCKeditor…i’m guessing this is because most tags are stripped out of the post due to security issues. You can check out the strip_tags command in showCard.php
Greg
April 7th, 2006 at 10:11 am
Greg,
I have had luck with install however when I go to upload an image I get a “image was not uploaded” error. No explaination, just the message. What am I doing wrong?
BTW, It’s a JPG
May 24th, 2006 at 3:58 pm
Hi Greg;
I’d like to send you a check. What’s your postal address.
I think this is really great.
Thanks, John
September 12th, 2007 at 5:46 am
Greg - I’m having trouble with getting in as administrator (in 1.46) I ran setup.php and got to the login page but that won’t accept any inputs: neither my userID or any password (setup is telling me that the password should be the same as the userID, but that doesn’t work, nor does my personally selected password which I put into config.php). Both refused.
Any suggestions?
Bill