hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

JeiAr
These will probably be poted on BugTraq in the next day or two. JelSoft were informed, but who knows when thet will release a patch. They may just call it vBulletin 2.3.5 and charge for it tongue.gif

http://www.gulftech.org/03152004b.php
shaun2k2
Nice work JeiAr smile.gif

I better get my mates to upgrade when a new board is made available. I'm guessing writing a patch would be against the license, because it's not open source?

I agree about that money comment. vBulletin is a decent board, and people insist it's very secure. Heh, the only reason there are less reports of sec vulns in vbulletin is because fewer people have access to the source smile.gif. Hehe, surely they can't make customers pay for an upgrade though?


-Shaun.
JeiAr
Thanks Shaun smile.gif I agree about the source issue. I think personally that phpBB and the like are more secure. I would have included patch info in my report, but I don't take much time with pay software. One of the reasons I do research is a hobby, but the other is cause I feel like I give something back to the OpenSource community.

vBulletin should make vBulletin Lite available again under the GPL. Anyway, forget them and thier policies. rolleyes.gif BTW, they weren't informed about the private.php issue. I don't think it exists in 3.x, but does in 2.x I found that after I made the BugTraq posting && notified JelSoft.
JeiAr
Seems the admincp and modcp logins are also vuln to XSS. See my original write up for details.

http://www.gulftech.org/03152004b.php
aapje
nice found! lets try it out... smile.gif
JohnAcres
im gonna try to secure my board and then i just gota wait for a patch :/ but this does look interesting to explore a bit...
pollo
Thanks
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.