Reporting a vulnerability in a no longer supported modification
Hello Guys,
I have the following dilemma. I'm reasonably certain that a modification hosted on vbulletin.org is vulnerable to an SQL injection. I don't have a vB license atm., and can't verify if the latest version is vulnerable. But the mod hasn't been updated in years; I'd bet it still is vulnerable.
Any advice on how I can inform the people using the mod about the problem is appreciated.
Thank you
|