The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
i need some security mods or scripts
hey all.
i need some firewall scripts or mods do defence my vbullen. i already used vBfirewall and i didnt like it. do you have some other scripts? mybi even for php or something else. |
#2
|
|||
|
|||
What do you need to defend your board against?
|
#3
|
|||
|
|||
i want to defenD against sql inj
my vb version is 3.8.0 |
#4
|
|||
|
|||
Use the latest stable version of vB without modifications and you should not have a problem with SQL injections. You can only suffer from this if you are using insecure modifications.
|
#5
|
|||
|
|||
all the modifications from vb.org have been tested by someone ? if not then where do we get secure modification as u said above..
|
#6
|
||||
|
||||
Quote:
all the mods here are NOT tested, they are made from those wanting to share their mods If you want the most secure board, than update and don't use any mods |
#7
|
|||
|
|||
Quote:
and i will upgrade to 3.8.1 like all of you said here |
#8
|
|||
|
|||
Most of the MODs that are here are "as-is" and at your own risk as far as I know. The ones that you need to be really critical of are the ones that accept user input. They represent the most risk if they are not filtering and sanitizing user input which may be most of them that collect user data. Forms are most often the vehicles for sql injections but not always. They can be passed through the browser as well. You should be really concerned with mods that request data in any event. BTW, I have been running 3.8.1 since the day it was released and it was upgraded from 3.7.5 with no problems and only minor custom style changes, fyi.
HTH |
#9
|
|||
|
|||
so it means.. mod from vb.org are not really secure.. it just like downloading it from vb.org or any other warez forum.... there is no difference....hmm interesting....
|
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|