Announcement

Collapse
No announcement yet.

Dangerous VBulletin Exploit In the Wild

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Dangerous VBulletin Exploit In the Wild

    Posted by Unknown Lamer on Wednesday October 9, 2013 9:27 A.M.

    An anonymous reader writes "vBulletin is a popular proprietary CMS that was recently reported to be vulnerable to an unspecified attack vector.

    Although vBulletin has not disclosed the root cause of the vulnerability or its impact, we determined the attacker's methods.

    The identified vulnerability allows an attacker to abuse the vBulletin configuration mechanism in order to create a secondary administrative account. Once the attacker creates the account, they will have full control over the exploited vBulletin application, and subsequently the supported site."
    The Hackmaster

  • #2
    I'm guessing that's related to the clowns that hacked this place?
    http://gamehacking.org/vb/threads/8769-Forum-Hacked
    July 7, 2019

    https://www.4shared.com/s/fLf6qQ66Zee
    https://www.sendspace.com/file/jvsdbd

    Comment


    • #3
      I don't know about that. That warning was given on 8/27/13, and the forum was hacked on 9/1/13.
      The Hackmaster

      Comment


      • #4
        Most of those hacking incidents are from leaving the /install folder behind. Always delete it after you're done using it! Which reminds me.. vbulletin 4.2.2 "FULL" was released 2 days ago.
        Last edited by final kaoss; 10-10-2013, 10:52:01 AM.
        Video Game Chat

        Comment

        Working...
        X