Quick Login   
 
Register AdminFusion Tutorials Post Fusion Forum Matrix
 
Go Back AdminFusion » Software & Tech » Software » Other Software » [MyBB News] MyBB 1.2.6 Released - Security Update
Reply
 
LinkBack
Old 04-25-2007, 02:50 AM   #1
Forum Guru
 
Join Date: Sep 2005
Posts: 8,308
Industry News is on a distinguished road
Post [MyBB News] MyBB 1.2.6 Released - Security Update

MyBB 1.2.6 is a security update to the MyBB 1.2 series. It fixes a high risk vulnerability recently discovered and reported in MyBB. We recommend everybody upgrades to this release as soon as possible or patches their boards with the manual patching instructions below.

We recommend all users upgrade their copy of MyBB to the latest available release.

This vulnerability allows a hacker to use SQL in a certain part of the calendar to gain the login key and password hash to your forum.

Immediately we're releasing a new version of MyBB which patches this exploit (MyBB 1.2.6). MyBB 1.1.8 is also affected. (See below)

MyBB 1.2.6 fixes this security vulnerability and nothing more: We're not quite ready to release a bug fix update at this time.

MyBB 1.2.5 to MyBB 1.2.6
This patch is only for users running MyBB 1.2.5. If you are running any other version of the MyBB 1.2 series then please download MyBB 1.2.6 from the MyBB site and update to it.

Please download the attached ZIP archive of calendar.php and inc/class_core.php and replace the files in your forum directory with the versions from the ZIP archive.

If you wish to manually patch your board please download "mybb_125_sql_fix.txt" and follow the instructions in that file.

More...
Industry News is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
[MyBB News] MyBB 1.2.5 Released - Security Update Industry News Other Software 1 04-17-2007 09:50 PM
[MyBB News] MyBB 1.2.4 Released - Important Security Update Industry News Other Software 2 04-04-2007 11:38 AM
MyBB 1.2.1 Released - Maintenance & Security Update Release Belloman Other Software 0 09-27-2006 10:52 PM
Chris B - MyBB Owner Ryan Interviews 9 08-23-2006 06:06 AM
MyBB RC4 Security Update [16/08/05] miner Software 0 08-25-2005 08:18 AM

AdminFusion

All times are GMT +1. The time now is 07:18 PM. Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

© 2009 AdminFusion | Advertising Opportunities | Legal | A member of the Crowdgather Forum Community
 
From:
Title:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77