MyBB Community Forums
Discuss: MyBB 1.03 Released - Security Update - Printable Version

+- MyBB Community Forums (https://community.mybb.com)
+-- Forum: Community Archive (https://community.mybb.com/forum-106.html)
+--- Forum: Archived Forums (https://community.mybb.com/forum-143.html)
+---- Forum: Miscellaneous Archive (https://community.mybb.com/forum-140.html)
+----- Forum: Old Announcements (https://community.mybb.com/forum-2.html)
+------ Forum: Announcements Discussion (https://community.mybb.com/forum-31.html)
+------ Thread: Discuss: MyBB 1.03 Released - Security Update (/thread-6419.html)

Pages: 1 2 3 4 5


Discuss: MyBB 1.03 Released - Security Update - Chris Boulton - 01-31-2006

Please discuss this thread here.


RE: Discuss: MyBB 1.03 Released - Security Update - zaher1988 - 01-31-2006

alright, now i got why i wasn't able to access to the board Smile

thanks chris Big Grin


RE: Discuss: MyBB 1.03 Released - Security Update - Ozidave - 01-31-2006

Good one mate, Thanks for getting on top of it so quickly and patching it.

I'll add the hacker details to the 'Bastard-List' in banned IP's etc. Wink


RE: Discuss: MyBB 1.03 Released - Security Update - Chris Boulton - 01-31-2006

I wish it hadn't happened at all. Well, It would have been better if it happened tomorrow when my connection wasn't capped (Trying to restore backup + Find exploit + Write patch + Brother downloading = Not good).

I'm hoping (as the access logs were somehow corrupt - full of question marks), that this is what the attacker exploited.


RE: Discuss: MyBB 1.03 Released - Security Update - Ozidave - 01-31-2006

I had a play today after reading DennisTT thing about a User with the same name... albeit some embedded code after DennisTT.

I had a play with a "test" site and found that extended ANSI/Ascii codes can be put into the message base... using ALT+ whatever. Maybe of no value to you, just thought I'd mention it as one of the codes I used wanted to print a lot of stuff and clog up the system, without actually doing anything. ??


RE: Discuss: MyBB 1.03 Released - Security Update - zaher1988 - 01-31-2006

Chris are u going to make furthure actions to DEDO ??
regards


RE: Discuss: MyBB 1.03 Released - Security Update - .Lou - 01-31-2006

Is there a way for me to get my hands on the hacker's ip address to ban him from my server?


RE: Discuss: MyBB 1.03 Released - Security Update - zaher1988 - 01-31-2006

well yeah these are his details
name: dedo
Email Address: [email protected]
IP Address: 88.152.35.15

regards



RE: Discuss: MyBB 1.03 Released - Security Update - Justin - 01-31-2006

Thanks, upgraded/updated my forums.


RE: Discuss: MyBB 1.03 Released - Security Update - xiaozhu - 01-31-2006

Hmm no wonder I can't access the forum just now..

Going to upgrade my forums now