vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   SQL injection Vulnerabilities (https://vborg.vbsupport.ru/showthread.php?t=180511)

GhOsTxX 05-26-2008 01:20 AM

SQL injection Vulnerabilities
 
Hello, i was informed by one of my staff members, that my site had 2 SQL injection Vulns, and i was wondering how i could fix this, or how to solve this problem, if anybody would help me, i can provide the links with the SQL injection Vulns, i would prefer the assistance of Moderators or staff here. So please let me know whats going on. thank you

King Kovifor 05-26-2008 01:47 AM

Are these Vulnerabilities within a modification? If so, please report them using the report post feature and we will verify, quarantine, and notify the author. If they are within vBulletin, please create a private bug report on vBulletin's bug tracker.

GhOsTxX 05-26-2008 02:02 AM

actually they are not related to mods, so how can i fix them? and where can i input them in the bug tracker or w/e its called

SEOvB 05-26-2008 02:05 AM

If its vBulletin security holes, you should notify vBulletin.com either in a support ticket or their bug tracker i suppose

King Kovifor 05-26-2008 02:08 AM

If they are vBulletin related, head over to vBulletin.com, then to the forums, then click Projects in the navbar, clock on vBulletin, create new bug, mark as private. That will allow the developers to fix it. And we don't suggest announcing these vulnerabilities. But if you would like to PM me the vulnerabilities I will verify and report them for you.

GhOsTxX 05-26-2008 02:09 AM

yes, i will do this, but can you fix them for me?

King Kovifor 05-26-2008 02:10 AM

I should be able to advise you on code changes.

GhOsTxX 05-26-2008 02:12 AM

ok, so do i send you the links to the vulns?

King Kovifor 05-26-2008 02:13 AM

Yes, send them my way.

dtv100 05-26-2008 02:15 AM

what version of vbulletin you are using?


All times are GMT. The time now is 01:02 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01121 seconds
  • Memory Usage 1,715KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete