The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
![]()
On one of my forums, it seems that a certain someone can get into anyone's account at any point in time and post on it. It's not a password problem, because everyone has already secured their passwords and he's still able to do it. It's vBulletin version 3.6.5. I don't know if this is important or not, but I really don't think he can do much else besides post because that's the only thing being done. No PMs, no PW changes, account changes, etc. Just posts.
|
#2
|
|||
|
|||
![]()
upgrade to 3.6.7 latest.
XSS hacking has become popular with vBulletin (stealing someone's session while they are logged on). This is common with XSS. |
#3
|
|||
|
|||
![]()
What other versions has this problem affected? (i've got a couple of 3.5.1's installed)
|
#4
|
|||
|
|||
![]()
read this site's main page.
it should have some information on which versions are effected. |
#5
|
|||
|
|||
![]()
always upgrade to the latest version!
|
![]() |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|