Thanks. I hadn't modified user.php as a result of the hack, however, I had added a subroutine into global.php, which when it queried the user account, rendered it uneditable via the Admin CP. Very shoddy work -- I had no idea what the query was originally intended to do, but I removed the hack, and I think someone should move it to Beta Hacks, rather than keep it afloat in Full Releases. It's a shame, because you won't really notice the corruption until the Warnings System starts banning your users.
|