Originally Posted by Pipo123
Multiple SQL queries do not filter input and are subject to SQL injection attempts.
For example the "UPDATE tournament SET winner =" queries in arcade.php and mod_arcade.php
are u saying some of my arcade files were possibly hacked and pushed to 777...or were you answering someone else's question ? im confused.
and could this spread to any of the vBulletin database tables ?
now u guys are gettin me all paranoid. :erm: