vBulletin Enhancement

Purchase vBulletin Purchase vBulletin Purchase vBSEO Purchase vBSEO Download Styles Products Download Styles Downloads Frequently Asked Questions FAQ Member List Members List
Go Back   vBulletin Enhancement > vBEnhanced.com > Announcements

vB Enhanced - vBulletin Modifications, Styles and Services Home Join vBulletin Enhancement Register Mark Forums Read


Security Hole in vBPlaza

Security Hole in vBPlaza

this thread has 0 replies and has been viewed 889 times

Reply
 
LinkBack Thread Tools Display Modes
Old 02-07-2007, 09:16 PM   #1
Administrator
 
Kall's Avatar
 
 Join Date: Oct 2005
  6 month star 12 month star
  Posts: 375
 Rep Power: 10Kall has disabled reputation
Security Hole in vBPlaza

If you are running vBPlaza, and have clicked Install, you will have received the following email:
Quote:
Official Security Exploit Warning:

The staff has been notified of a potential XSS vulnerability in the vbBux / vbPlaza modification. We have confirmed the exploit along with additional exploits in varying degrees. This notification is to serve as an official warning - it is HIGHLY recommended that you disable/uninstall the modification until a fix is provided.

To review protocol for modifications with confirmed exploits found please visit:

Mod Vulnerability Guidelines - vBulletin.org Forum

Best Regards,
vBulletin.org Staff
I recommend all users of vBPlaza to disable the modification through vBulletin Options - vBPlaza Options, as well as Disabling it through the Product Manager, just to be safe.

I will update this when the fix is posted.
Kall is offline   Reply With Quote
Reply



Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Please note that vBEnhanced is in no way affiliated with Jelsoft Enterprises Ltd, nor will Jelsoft be able to provide any support for our products.

vBEnhanced is hosted on a Dual Opteron Server provided by Sparkle Hosting
All times are GMT +13. The time now is 08:27 PM.


Web 2.0 - Blue vBulletin Style ©2006 vBEnhanced
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.0.1