Go Back   vb.org Archive > vBulletin 4 Discussion > vB4 General Discussions
  #1  
Old 06-16-2011, 01:58 AM
NarutoFTW NarutoFTW is offline
 
Join Date: Dec 2009
Posts: 123
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Forum user hacked

Could anyone review my mods and check if any mods below are exploitable? my staff accs were hacked.


vBulletin 4.1.4
AWCoding- Back-End 4.0.2 AWCoding Software Back-End System

BB Code Hide 1.0.0 Hide strings dpeending on usergroup

Digital Point Sphinx Search 1.1.2 Utilize The Sphinx Search Engine For Seaching.

Digital Point Spy 1.1.0 System To Show What's Going On In The Forum

DragonByte Tech: Advanced Post Thanks / Like (Pro) 1.0.1 Advanced Post Thanks / Like lets members quickly voice their opinion on a post.

DragonByte Tech: vBCredits II Deluxe (Pro) 2.0.0 The Ultimate Points System by Darkwaltz4 [blackwaltz4@msn.com] enables users to gain currency for their actions on your site, and spend them on many third party applications!

DragonByte Tech: vBShop (Pro) 2.0.1 vBShop is an advanced Shop system for vBulletin, designed to let your members spend accumulated points on various forum actions.

Force Users to Read a Thread 2.10 This hack allows you to specify a thread that you would like users to read. They would not be able to do anything else on the forum before reading it.

FractalizeR: items to moderate in notifications 4.02 Shows items, needed moderation in notifications area

Global Threads VB4 2.02 Allows you to display "global" threads. (The same thread in every forum.)

Hasann - Sub-Forum Manager 4.0.1 Sub-Forum Manager by Hasann

Helpful Answers 2.3.3 Allows users to rate answers as helpful or not.

iTrader 2.8.0 Trader Feedback System

Log Logins Hack 2.10 Log Logins Hack

Login.php phishing patch 1.0 Prevents the url varible from being exploited in lostpw requests

MARCO1 Hide All 4.5 Hide links - Attachments from guests and members with excluding user groups with ability to change error messages, By Marco Mamdouh

Members who have Visited 4.1.0 Display members who have visited the forum.

Post Thank You Hack 7.82 Post Thank You Hack

Prevent Double Posts 4.1.0 Prevents double posting by merging posts.

Raffles 1.1.5 Run raffles on vBulletin.

RU Media BB Code 0.11 BB Code to embed media links. Please donate $1 to http://RetroUprising.com/misc.php?do=donate to support the future of this mod.

Separate Sticky and Normal Threads 4.0.1 Separate Sticky and Normal Threads

Skimlinks Plugin 2.0.7 Official Skimlinks plugin for vBulletin

Tabbed FORUMHOME 1.0

Threads Auto Close 0.3

Today's Top Poster(s) 4.0.RC1 by Hasann

v3 Arcade 2.0.2 Professional vBulletin Gaming (vB4)

vB Optimise Pro 2.3.0 Optimises the stock vBulletin software to reduce load and potentially improve max capacity and load times.

vBSEO 3.6.0 vBulletin SEO

vBSEO :: Conditional Signatures 1.4.1 Add rel='nofollow' or disable signature conditioned to posting's length.

vBSEO :: Sitemap Generator 3.0 Generate a Google & Bing Sitemap for your Forums

vBulletin Blog 4.1.4 Personal web log, integrated with vBulletin.

vBulletin CMS 4.1.4 Content Management System

VSa - Advanced Forum Statistics 7.0.3 VSa - Advanced Forum Statistics

VSa - Advanced Permissions Based on Post Count 5.1 VSa - Advanced Permissions Based on Post Count

VSa - Advanced Registration 2.0.1 VSa - Advanced Registration

VSa - Moderating Stats 2.0.1 VSa - Moderating Stats

VSa - Top Posters of the Month/Year 2.0 VSa - Top Posters of the Month/Year

Yet Another Award System 4.0 4.0.2.1 Yet Another Awards System for vBulletin 4.0.x
Reply With Quote
  #2  
Old 06-16-2011, 02:10 AM
Lynne's Avatar
Lynne Lynne is offline
 
Join Date: Sep 2004
Location: California/Idaho
Posts: 41,180
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

*You* should go to each modification thread and check to see what version you are running on your site, and what the current version is being offered. Then, you should also read the modification thread and see if there has been talk of an exploit at all. This is your responsibility. Nobody else can do this.
Reply With Quote
  #3  
Old 06-16-2011, 11:41 AM
DragonByte Tech's Avatar
DragonByte Tech DragonByte Tech is offline
 
Join Date: Feb 2010
Location: Scotland
Posts: 8,814
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Just rolling in to help ya out here by letting you know none of the DragonByte mods have any reported exploits =)
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 11:42 PM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2024, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.03501 seconds
  • Memory Usage 2,170KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (3)post_thanks_box
  • (3)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (3)post_thanks_postbit_info
  • (3)postbit
  • (3)postbit_onlinestatus
  • (3)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete