I haven't had anymore problems since I upgraded, and I've had multiple attempts each day since.
I do know for a fact that they are varying the original meta refresh script that they intially used.
Like I said the updated version works fine, but if it will help here is an extra little step I added.
Quote:
Go to vBulletin Options --> Censorship Options --> Censored Words and add these to your list of censored words.
Code:
content=0 content="0 LANGUAGE= JavaScript {meta} refresh >> >>> >>>> >>>>> >>>>>> {http-equiv} "Refresh" """"
|
There is no need for the above listed words and or characters to be used in a discussion on a vB board, unless it's a computer related board discussing code.
Also, something to think about is that a lot of people have "test" forums on their servers to try out new hacks and upgrades before installing them on their "live" board. Please remember that if you installed Cyb-Advanced Stats, TopXStats or FlashChat on your test board and they are still on there and/or unpatched then you are still at risk, especially with FlashChat as they are gaining directory access through holes before version 4.6.2.
If you have been hit with these exploits (and you are able to log into your AdminCP)...go to
vBulletin Options --->
Plugin/Hook System--->Enable Plugin/Hook System
=NO and either upgrade or try the suggestion I have listed above.
Hope this helps.