Quote:
Originally Posted by dina
I don't see any remarks being made on the recent exploit they have found in the mod (it involves index.php and the ability to extract the password for any member on the board by entering a sql query in the URL ending with user id).
I saw this on a newsgroup today, but haven't seen it here so far.
|
So what are you going to do with a password thats encrypted? this mod uses the same user table as vbull so the same password security applies.