Quote:
Originally Posted by Schoelle
Thanks for the upcoming update.
Could you please explain what the exploit was and what could have happended to our boards?
Are passwords unsecure now or could some code be on our pages?
Please let us know what we can do to be sure that we are unaffected.
Thank you!
|
injection on arcade.php. Allowed a user to gain the MD5 and salt of any user it requested. best way to check if you are infected is to search for the following in your logs
Code:
Arcade&do=stats&comment=a&s_id=
If you find injection then follow it up.