vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vbBux / vbPlaza (https://vborg.vbsupport.ru/forumdisplay.php?f=171)
-   -   vbBux / vbPlaza v1.5.8 has been released! (https://vborg.vbsupport.ru/showthread.php?t=121138)

Artificial_Alex 02-05-2007 11:22 PM

All I will say is its to do with the donate feature and a script.

Pete C 02-06-2007 12:55 AM

I got the same Email, so I checked back here to be sure it was for real . . this has been a very popular hack, and I wanted to be sure before taking it off.

Despite the annoyance of having to do that, I'd like to say a BIG thank you for the heads-up, and my appreciation to vB for acting on the info so fast.

I can't see the thread either, so it's obviously been removed for good reason - but I would have clicked it uninstalled ;) . . at least till something can (hopefully) be done to address the exploits.

Good info, sad loss.

Shazz 02-06-2007 01:36 AM

Quote:

Originally Posted by Artificial_Alex (Post 1175607)
All I will say is its to do with the donate feature and a script.

Your post was strong enough to scare away over 50 users of vbplaza now :o

Artificial_Alex 02-06-2007 01:38 AM

Meh, you asked. ;D

MThornback 02-06-2007 01:58 AM

Thanks for the save :) we all appreciate it!

NFLfbJunkie 02-06-2007 02:07 AM

What can happen if someone decides to keep this MOD active on their boards?

Shazz 02-06-2007 02:48 AM

Quote:

Originally Posted by Junkie (Post 1175695)
What can happen if someone decides to keep this MOD active on their boards?

Well its not like every board with vBplaza will just die
Unless the exploit was posted on some site which gave more people that oppertunity to do it on more sites -.-

Pete C 02-06-2007 02:52 AM

Quote:

Originally Posted by Shazz (Post 1175672)
Your post was strong enough to scare away over 50 users of vbplaza now :o

I only got 50 members, and now there's nothing to bribe 'em in with - gonna have to seriously update my content now . . . lmao!

Seriously though, if there was no risk, I'm sure that would be clarified - instead the entire hack has been removed and vB have taken the trouble to mail-out to all the installers . . no smoke without fire imo - it ain't fear it's logic.

I'd sure like to see it fixed though - good luck to the guys working on it.

Quote:

Originally Posted by Junkie (Post 1175695)
What can happen if someone decides to keep this MOD active on their boards?

Well, you could end up with a whole bunch of Admins . . or worse ;)

Quote:

Originally Posted by Artificial_Alex (Post 1175527)
It was being exploited to get users/staff's passwords.

My WHOLE staff got their passwords obtained by this person exploiting it.


NFLfbJunkie 02-06-2007 02:56 AM

Quote:

I'd sure like to see it fixed though - good luck to the guys working on it.
Is there someone in fact working on a fix?

Greek Wizard 02-06-2007 08:05 AM

Quote:

Originally Posted by Artificial_Alex (Post 1175607)
All I will say is its to do with the donate feature and a script.

If we disable just the donate function, will this allow the rest of the hack to be active and safe?


All times are GMT. The time now is 10:02 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01474 seconds
  • Memory Usage 1,739KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (7)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (4)pagenav_pagelink
  • (1)pagenav_pagelinkrel
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete