Jump to content
xisto Community
Solar

Phpbb Exploit

Recommended Posts

Recently, an exploit has been found out that allows people to use their cookies to gain access to the ACP. And Firefox assists with it :)!Basically what happens that is when you visitthe phpBB forum, it logs a cookie containing your Session ID (Basically who and when you are). What it does, after much decoding and encoding, is allows you to replace your SID with the admin's, thus enabling them to gain access. To fix this, upgrade to the latest version of phpBB, 2.0.13.Dun dun dunnnnn! Beware :)

Share this post


Link to post
Share on other sites

Ah, that's the exploit my friend was telling me about? He was breaking into admin accounts on phpBB and I'm like, dude, wtf? And he was like, I'm a 1337 hax. >_> But I knew he was lying and that there was some kinda of exploit behind it. ~_~ That fake hacker.

Share this post


Link to post
Share on other sites

Exactly.I've been going arond and warning people, just because I'm so nice *cough cough*:)

Share this post


Link to post
Share on other sites

Bumping up a completely old topic just to spam? Wow... I'm reading through all of your posts and I can see why your hosting got denied. Maybe if you actually spent some time using what little bit of intelligence you may have left, you could muster up some quality posts.

Share this post


Link to post
Share on other sites

I would recomend moving from phpBB, in my opinion its seen its glory days and they have gone. (This is MY opinion not a host decision) They are a huge target now with the code being insecure, I present to you SMF, Simple Machines Forum from the makers of YaBBSE, Yabbse wasnt anything to sing about but now SMF is, its in RAPID development, I mean, theres the current release 1.0.3 and 1.1 is already stable, although we wont be seeing 1.1 for months its gonna be as easy as the rest of the SMF updates (Clocked 5 seconds!). SMF has a package manager that automatically installs mods you want so you dont need to touch the code. It has over 85 themes already. Its been rated by several people to be better than paid software, also it is free and can handle any load. If your wondering why are we using IPB, then just wait, the Trekkie is working :)Check it out http://www.simplemachines.org/ My install (on Xisto) http://forums.xisto.com/no_longer_exists/ :) Enjoy!

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×
×
  • Create New...

Important Information

Terms of Use | Privacy Policy | Guidelines | We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.