Quote:
Originally Posted by cellarius
It is most definitely not.
There's no additional query added.
If a person has access to your AdminCP, then TMS is most likely the last thing he will use to exploit your site
I'm pretty sure you have not quite understood how TMS works...
|
First, when you install
ANY mod or hack outside of vBulletin you are opening yourself for a potential risk. This has been stated in several places on this site as well as vBulletin.com. Having files other than vBulletin files opens your risk giving hackers a possible way to gain access into your site/server. Some hacks have better safeguards in place than others. Some people who create mods do not always know what they are doing, some do. I've never used the TMS mod personally on one of my sites and never will because I do not need to have a secondary mod do something that I can do myself. I see no use in it personally. I've had client's who have come to me in the past with the TMS mod installed with some pretty major problems and complaints that they could not upgrade vBulletin or do other things
because of that mod. And when I went through a trouble shooting process I found that it
WAS that mod causing the problem.
I do not allow other people in my own AdminCP. There is no use for that for me. So saying that someone cannot gain access while going into your AdminCP does not apply. Also you run a risk of allowing someone in your AdminCP, but I doubt if the TMS is going to stop them from hacking the site.
If the TMS mod is your mod and you are getting your feathers ruffled because I said it was buggy then I'm sorry but in my experience it
has been buggy in the past. It may not be so now, but it has been before.