vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin.org Site Feedback (https://vborg.vbsupport.ru/forumdisplay.php?f=7)
-   -   vbBux & vbPlaza Removal (https://vborg.vbsupport.ru/showthread.php?t=138591)

AuroraStorm 02-18-2007 04:51 PM

I don't hold anyone responsible. My entire site was destroyed but shite happens. It's an unfortunate thing and lessons are learned behind it. It could have been worse because I didn't delete anything and was able to rebuild my site quickly thanks to my buddy Willy so I'm thankful to have the foresight not to delete any of the images and skinz that I uploaded. I usually check this site often and I was surprised someone didn't alert to the problem sooner or maybe they did and I missed it. The hack was, next to the Arcade, the most popular thing on my board and it's missed and hopefully CMX will come back (and I'd be willing to break him off a donation) and get it back up and running...

Here's what I want to know and maybe Zeropage can answer. Can I still run the Ibproarcade without the vbux/vplaza?

kall 02-18-2007 05:22 PM

Quote:

Originally Posted by Tommy12345 (Post 1185318)
VBulliten.org needs to sent out an email to ALL members of this problem to prevent people from losing years of data accumulated due to no emergency data backup. :up:

This was done immediately upon learning of the issue.

All users who had clicked Install received the following email:

Quote:

Official Security Exploit Warning:

The staff has been notified of a potential XSS vulnerability in the vbBux / vbPlaza modification. We have confirmed the exploit along with additional exploits in varying degrees. This notification is to serve as an official warning - it is HIGHLY recommended that you disable/uninstall the modification until a fix is provided.

To review protocol for modifications with confirmed exploits found please visit:

https://vborg.vbsupport.ru/info.php?do=security

Best Regards,
vBulletin.org Staff
.. highlighting the importance of clicking Install, if you want to receive IMPORTANT updates. :)

Tommy12345 02-18-2007 07:16 PM

Quote:

Originally Posted by kall (Post 1185416)
This was done immediately upon learning of the issue.

All users who had clicked Install received the following email:



.. highlighting the importance of clicking Install, if you want to receive IMPORTANT updates. :)

Great job. I am going back to the arcade mod and click installed incase I have not done so.
Looks like this exploit is gaining momentum, I just saw a blank website that I was visiting, that site had the mod installed, I warn the webemaster to disable it but..

Zachariah 02-18-2007 11:43 PM

Quote:

Originally Posted by AuroraStorm (Post 1185389)
Can I still run the Ibproarcade without the vbux/vplaza?

Yes.
It's an independent script with a vbux plugin.

tuwebfacil 03-10-2007 01:48 AM

I think one of my sites was hacked, what I have to do?

I disabled the hack by now, but I am still hacked. I prefer to not say the type of hacking to avoid others users from being hacked.


All times are GMT. The time now is 03:10 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01109 seconds
  • Memory Usage 1,728KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (4)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (5)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete