Being false is even worse than not being there at all - as that will also disable the POST referrer whitelist check.
So with this setup your board is more unsecure then 3.6.9/3.7.0 RC 3.
Fixing your issues is quite simple: Upload all original non-image files, revert all templates and disable the plugin system.
If there are still issues afterwards, open a support ticket @ vbulletin.com
If you do not want to go this route, you will have to fix the installed modifications/templates yourself - refer to the article about CSRF protection.
Detailed instructions have been posted there.
|