• Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
  • Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!

Just as well Admin did that forum upgrade after all :)

Collapse
X
  •  
  • Filter
  • Time
  • Show
Clear All
new posts

    Just as well Admin did that forum upgrade after all :)

    vBulletin vuln gifts admin credentials to unwashed masses

    Exploiting the bug is as easy as entering “database” (minus quotes) in the search box of a forum's FAQ page. Vulnerable sites respond by returning everything that's needed to view sensitive user information or make administrative changes.
    Ooops, someone forgot to close that backdoor they put in for the devs
    "Being nice costs nothing and sometimes gets you extra bacon" - Pondlife.

    #2
    Cough.

    Comment

    Working...
    X