PDA

View Full Version : Dangerous VBulletin Exploit In the Wild


sl4shd0t
10-09-2013, 04:58 PM
An anonymous reader writes "vBulletin is a popular proprietary CMS that was recently reported to be vulnerable to an unspecified attack vector. Although vBulletin has not disclosed the root cause of the vulnerability or its impact, we determined the attacker's methods. The identified vulnerability allows an attacker to abuse the vBulletin configuration mechanism in order to create a secondary administrative account. Once the attacker creates the account, they will have full control over the exploited vBulletin application, and subsequently the supported site." http://a.fsdn.com/sd/twitter_icon_large.png (http://twitter.com/home?status=Dangerous+VBulletin+Exploit+In+the+Wil d%3A+http%3A%2F%2Fbit.ly%2FGNNdeb) http://a.fsdn.com/sd/facebook_icon_large.png (http://www.facebook.com/sharer.php?u=http%3A%2F%2Fit.slashdot.org%2Fstory% 2F13%2F10%2F09%2F1253209%2Fdangerous-vbulletin-exploit-in-the-wild%3Futm_source%3Dslashdot%26utm_medium%3Dfacebo ok) http://www.gstatic.com/images/icons/gplus-16.png (http://plus.google.com/share?url=http://it.slashdot.org/story/13/10/09/1253209/dangerous-vbulletin-exploit-in-the-wild?utm_source=slashdot&utm_medium=googleplus)

Read more of this story (http://it.slashdot.org/story/13/10/09/1253209/dangerous-vbulletin-exploit-in-the-wild?utm_source=rss1.0moreanon&utm_medium=feed) at Slashdot.
http://slashdot.feedsportal.com/c/35028/f/647376/s/323e73e4/sc/25/mf.gif


http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/sc/25/rc/1/rc.img (http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/sc/25/rc/1/rc.htm)
http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/sc/25/rc/2/rc.img (http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/sc/25/rc/2/rc.htm)
http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/sc/25/rc/3/rc.img (http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/sc/25/rc/3/rc.htm)

http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/a2.img (http://da.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/a2.htm)http://pi.feedsportal.com/r/176967852788/u/49/f/647376/c/35028/s/323e73e4/a2t.imghttp://feeds.feedburner.com/~r/Slashdot/slashdotDevelopers/~4/jFAeL-5OZK4

More... (http://rss.slashdot.org/~r/Slashdot/slashdotDevelopers/~3/jFAeL-5OZK4/story01.htm)