Yeah, use the patch
EDIT: or justcopy over the new functions.php file
Im all updated, thanks for the fix (even though my forum is kinda just for me
)
Will78 Wrote:haha this is so funny you all
the site that did all the hacking of MyBB and IPB forums this week meaning found MyBB exploits and IPB's recent ones
has an illegal IPB
I fail to find any humor in that.
quite incredible the addslashes is forgotten on such an important variable, but hey everybody makes mistakes. Glad it was found soon.
zymic Wrote:they deleted my forums
You should check in the Admin CP if they hid the forums instead.
Jasper Wrote:quite incredible the addslashes is forgotten on such an important variable, but hey everybody makes mistakes.
I guess nobody expected slashes to be in the IP address, since it's not a typical get/post/cookie variable. Mistakes like this help you learn.
Indeed, easiest update I did so far for MyBB
well...I'm still setting up my first forum ever, so this is actualy also my first update...but I'm glad to see the response speed (and simplicity in this case) to security problems.
Good job Chris
Can someone tell me what this website is about? A user of mine pointed this out to me as we have recently had someone claiming that he has "hacked" a users password and logged in as him.
Ive updated MYBB to 1.6 but i wanted to know what this website was about? Is this a hacker site about MYBB? Sorry to be such a noob but its better to ask then to wonder.
http://www.milw0rm.com/search.php?dong=mybb