vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   Important Security Threat Vb 3.8.5! 3.8.6? (https://vborg.vbsupport.ru/showthread.php?t=251098)

ar2 09-24-2010 05:50 PM

Important Security Threat Vb 3.8.5! 3.8.6?
 
I want to warn You about some security issues/bug that allow some how to create exact same name of account that already exist. VB support was so lame about it they treated me like some idiot and send me a link to FAQ.

It happened on my forums on 3.8.5. Guy created same account as mine and sent his ICQ number via PM, after that, he tried to get some money for a server.

Now I run 3.8.6 PL1

I couldn't find any strict information about this problem, if there is please send me a link and delete this if not, I hope people will read this and check if they got admin names account doubled or not.

kall 09-24-2010 06:19 PM

A very quick scan of the vBulletin.com Announcements forum gives this thread.

http://www.vbulletin.com/forum/showt...te-quot-a-user

ar2 09-24-2010 06:25 PM

Great man, I was using different keywords, and .... VB support should point this (*&(*#%@(

One more time thanks for link.


All times are GMT. The time now is 06:13 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.00900 seconds
  • Memory Usage 1,710KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (3)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete