vBulletin vuln gifts admin credentials to unwashed masses
Ooops, someone forgot to close that backdoor they put in for the devs
Exploiting the bug is as easy as entering “database” (minus quotes) in the search box of a forum's FAQ page. Vulnerable sites respond by returning everything that's needed to view sensitive user information or make administrative changes.
Comment