View Full Version : SQL injection Vulnerabilities
GhOsTxX
05-26-2008, 01:20 AM
Hello, i was informed by one of my staff members, that my site had 2 SQL injection Vulns, and i was wondering how i could fix this, or how to solve this problem, if anybody would help me, i can provide the links with the SQL injection Vulns, i would prefer the assistance of Moderators or staff here. So please let me know whats going on. thank you
King Kovifor
05-26-2008, 01:47 AM
Are these Vulnerabilities within a modification? If so, please report them using the report post feature and we will verify, quarantine, and notify the author. If they are within vBulletin, please create a private bug report on vBulletin's bug tracker.
GhOsTxX
05-26-2008, 02:02 AM
actually they are not related to mods, so how can i fix them? and where can i input them in the bug tracker or w/e its called
SEOvB
05-26-2008, 02:05 AM
If its vBulletin security holes, you should notify vBulletin.com either in a support ticket or their bug tracker i suppose
King Kovifor
05-26-2008, 02:08 AM
If they are vBulletin related, head over to vBulletin.com, then to the forums, then click Projects in the navbar, clock on vBulletin, create new bug, mark as private. That will allow the developers to fix it. And we don't suggest announcing these vulnerabilities. But if you would like to PM me the vulnerabilities I will verify and report them for you.
GhOsTxX
05-26-2008, 02:09 AM
yes, i will do this, but can you fix them for me?
King Kovifor
05-26-2008, 02:10 AM
I should be able to advise you on code changes.
GhOsTxX
05-26-2008, 02:12 AM
ok, so do i send you the links to the vulns?
King Kovifor
05-26-2008, 02:13 AM
Yes, send them my way.
dtv100
05-26-2008, 02:15 AM
what version of vbulletin you are using?
vBulletin® v3.8.12 by vBS, Copyright ©2000-2025, vBulletin Solutions Inc.