vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin 4.x Add-ons (https://vborg.vbsupport.ru/forumdisplay.php?f=245)
-   -   Moderators Functions - Moderation Auto-PM v4.0.6 (https://vborg.vbsupport.ru/showthread.php?t=241248)

ozzy47 09-15-2013 06:51 PM

Lol, instead of writing tickets, they are going to write code to prevent the user from getting hacked again. :)

DemOnstar 09-15-2013 07:11 PM

Quote:

Originally Posted by ozzy47 (Post 2445830)
Lol, instead of writing tickets, they are going to write code to prevent the user from getting hacked again. :)

That's why we pay the tax....

Bring them in......Blue lights, noisy sirens....

Serve and protect.....:eek:

Simon Lloyd 09-15-2013 08:07 PM

Quote:

Originally Posted by Mr von (Post 2445806)
Yes, I can prove it. However, this hack is not solely responsible.

How can you prove it's this hack if it's not solely responsible?????????

smirkley 09-15-2013 10:28 PM

I have looked at the code, just out of curiosity, and until someone presents otherwise, I condem this assassination mearly a lame attempt at drama. Thats where I am leaving it.

kastak 09-30-2013 02:01 PM

I would like to clarify some things. I did not receive any notification from the Staff (vB.org) about potential vulnerability in this modification. The user who wrote post about hacked site, also does not provide any evidence that would confirm that this modification is flawed. The modification has not been suspended by the administration of this board and currently it is free from any vulnerabilities. I am waiting for any action, not baseless accusations.

ozzy47 09-30-2013 08:20 PM

I would not worry about it, kastak, seems like a bunch of marshmallow fluff to me. :)

AusPhotography 10-01-2013 03:01 AM

Proving a security hole is quite easy, simply find where the SQL injection or code execution hole exists (bad eval, preg_replace with /e modifier etc.).
In previous cases of mods with issues the specific faulty code is reported to staff and the mod is put on hold.

Make sure you have hard proof, otherwise it is most likely that you were hacked via some other vector.

Simon Lloyd 10-01-2013 05:26 AM

Quote:

Originally Posted by AusPhotography (Post 2449183)
Proving a security hole is quite easy, simply find where the SQL injection or code execution hole exists (bad eval, preg_replace with /e modifier etc.).
In previous cases of mods with issues the specific faulty code is reported to staff and the mod is put on hold.

Make sure you have hard proof, otherwise it is most likely that you were hacked via some other vector.

That's what I was saying, it's the users other vulnerabilities or mods like vbseo not up to date!

hugh_ 02-23-2014 08:09 PM

Great mod thanks! I'm surprised I've missed this one for so long.

hugh_ 03-11-2014 10:43 AM

Again I'm really pleased with this mod. Thank you!

However if I had to make one suggestion it would be including some kind of SPAM flood protection. Either a time limit after which subsequent edits are not reported or simply a limit to the number of notifications per user per day...


All times are GMT. The time now is 09:40 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01508 seconds
  • Memory Usage 1,734KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (3)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (4)pagenav_pagelink
  • (1)pagenav_pagelinkrel
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete