PDA

View Full Version : Forum user hacked


NarutoFTW
06-16-2011, 01:58 AM
Could anyone review my mods and check if any mods below are exploitable? my staff accs were hacked.


vBulletin 4.1.4
AWCoding- Back-End 4.0.2 AWCoding Software Back-End System

BB Code Hide 1.0.0 Hide strings dpeending on usergroup

Digital Point Sphinx Search 1.1.2 Utilize The Sphinx Search Engine For Seaching.

Digital Point Spy 1.1.0 System To Show What's Going On In The Forum

DragonByte Tech: Advanced Post Thanks / Like (Pro) 1.0.1 Advanced Post Thanks / Like lets members quickly voice their opinion on a post.

DragonByte Tech: vBCredits II Deluxe (Pro) 2.0.0 The Ultimate Points System by Darkwaltz4 [blackwaltz4@msn.com] enables users to gain currency for their actions on your site, and spend them on many third party applications!

DragonByte Tech: vBShop (Pro) 2.0.1 vBShop is an advanced Shop system for vBulletin, designed to let your members spend accumulated points on various forum actions.

Force Users to Read a Thread 2.10 This hack allows you to specify a thread that you would like users to read. They would not be able to do anything else on the forum before reading it.

FractalizeR: items to moderate in notifications 4.02 Shows items, needed moderation in notifications area

Global Threads VB4 2.02 Allows you to display "global" threads. (The same thread in every forum.)

Hasann - Sub-Forum Manager 4.0.1 Sub-Forum Manager by Hasann

Helpful Answers 2.3.3 Allows users to rate answers as helpful or not.

iTrader 2.8.0 Trader Feedback System

Log Logins Hack 2.10 Log Logins Hack

Login.php phishing patch 1.0 Prevents the url varible from being exploited in lostpw requests

MARCO1 Hide All 4.5 Hide links - Attachments from guests and members with excluding user groups with ability to change error messages, By Marco Mamdouh

Members who have Visited 4.1.0 Display members who have visited the forum.

Post Thank You Hack 7.82 Post Thank You Hack

Prevent Double Posts 4.1.0 Prevents double posting by merging posts.

Raffles 1.1.5 Run raffles on vBulletin.

RU Media BB Code 0.11 BB Code to embed media links. Please donate $1 to http://RetroUprising.com/misc.php?do=donate to support the future of this mod.

Separate Sticky and Normal Threads 4.0.1 Separate Sticky and Normal Threads

Skimlinks Plugin 2.0.7 Official Skimlinks plugin for vBulletin

Tabbed FORUMHOME 1.0

Threads Auto Close 0.3

Today's Top Poster(s) 4.0.RC1 by Hasann

v3 Arcade 2.0.2 Professional vBulletin Gaming (vB4)

vB Optimise Pro 2.3.0 Optimises the stock vBulletin software to reduce load and potentially improve max capacity and load times.

vBSEO 3.6.0 vBulletin SEO

vBSEO :: Conditional Signatures 1.4.1 Add rel='nofollow' or disable signature conditioned to posting's length.

vBSEO :: Sitemap Generator 3.0 Generate a Google & Bing Sitemap for your Forums

vBulletin Blog 4.1.4 Personal web log, integrated with vBulletin.

vBulletin CMS 4.1.4 Content Management System

VSa - Advanced Forum Statistics 7.0.3 VSa - Advanced Forum Statistics

VSa - Advanced Permissions Based on Post Count 5.1 VSa - Advanced Permissions Based on Post Count

VSa - Advanced Registration 2.0.1 VSa - Advanced Registration

VSa - Moderating Stats 2.0.1 VSa - Moderating Stats

VSa - Top Posters of the Month/Year 2.0 VSa - Top Posters of the Month/Year

Yet Another Award System 4.0 4.0.2.1 Yet Another Awards System for vBulletin 4.0.x

Lynne
06-16-2011, 02:10 AM
*You* should go to each modification thread and check to see what version you are running on your site, and what the current version is being offered. Then, you should also read the modification thread and see if there has been talk of an exploit at all. This is your responsibility. Nobody else can do this.

DragonByte Tech
06-16-2011, 11:41 AM
Just rolling in to help ya out here by letting you know none of the DragonByte mods have any reported exploits =)