IMPORTANT SECURITY FIX:
If you are using Webtemplates version 3.5.x or 3.6.00 or 3.6.01, please upload the attached 2 files into your server which fixes a security problem in the hack.
File wt_include.php should be uploaded to /includes/ folder.
File view.php should be uploaded to default forum folder (where showthread.php exists).
After the upload your webtemplate footer should say "version 3.6.02".
This is a quick fix for a security problem which is reported to me yesterday (Thanks to Devile!) and I'll update this thread and the hack if I further develop the patch algorithm.
If you have downloaded the hack ZIP file in the first post after this message of me, you already get the patched 3.6.02 version. If you are using old webtemplates for vbulletin 3.0.x, you don't have to apply any patches.
|