Results 1 to 14 of 14

Custom Plugin caused Major Security Leak!!!

This is a discussion on Custom Plugin caused Major Security Leak!!! within the Bug Reporting forums, part of the vBSEO SEO Plugin category; Contact me for info: adultseo@gmail.com...

  1. #1
    Senior Member
    Real Name
    Jan Jaap
    Join Date
    May 2006
    Location
    The Netherlands
    Posts
    132
    Liked
    0 times

    Custom Plugin caused Major Security Leak!!!

    Contact me for info: adultseo@gmail.com

  2. #2
    Senior Member BamaStangGuy's Avatar
    Real Name
    Brent Wilson
    Join Date
    Aug 2005
    Location
    Huntsville, Alabama
    Posts
    2,483
    Liked
    0 times
    Or you could just contact them http://www.vbseo.com/contactus.html or send a PM to Juan or Oleg

  3. #3
    Senior Member
    Real Name
    Jan Jaap
    Join Date
    May 2006
    Location
    The Netherlands
    Posts
    132
    Liked
    0 times
    I did, but I've experienced all goes verry slow

    Therefor, maybe some users with the right connections find this thread.

  4. #4
    Member
    Join Date
    Nov 2005
    Posts
    84
    Liked
    0 times
    /me runs off and does a backup.
    Check out vBPicGallery the Photo Gallery for vBulletin.
    Talk about motorcycles with bikers around the world.

  5. #5
    Senior Member
    Real Name
    Keith Cohen
    Join Date
    Jul 2005
    Location
    Raleigh, NC USA
    Posts
    6,147
    Liked
    12 times
    Quote Originally Posted by Adult SEO View Post
    Contact me for info: adultseo@gmail.com
    Open a ticket and provide the details.

  6. #6
    Senior Member
    Real Name
    Jan Jaap
    Join Date
    May 2006
    Location
    The Netherlands
    Posts
    132
    Liked
    0 times

    Exclamation

    I've already send 1 email from the forum contact form, 1 PM to one admin on the admin list (60 seconds timeout so I quit).

    And I've replied to Joe Ward via email as he contacted me 10 minutes ago appologizing for the delay (2 days), but no reply so far.

    Btw, I would turn off vBSEO for now if your server is important to you.

  7. #7
    Senior Member
    Real Name
    Keith Cohen
    Join Date
    Jul 2005
    Location
    Raleigh, NC USA
    Posts
    6,147
    Liked
    12 times
    Again, please open a support ticket with the details and we'll check into it.

    Thanks

  8. #8
    Senior Member
    Real Name
    Keith Cohen
    Join Date
    Jul 2005
    Location
    Raleigh, NC USA
    Posts
    6,147
    Liked
    12 times
    Just as a followup, this was determined to be caused by some other plugin, and not vBSEO.

  9. #9
    Senior Member Brandon Sheley's Avatar
    Real Name
    Brandon Sheley
    Join Date
    Oct 2005
    Location
    Kansas
    Posts
    2,347
    Liked
    19 times
    Blog Entries
    1
    Quote Originally Posted by Keith Cohen View Post
    Just as a followup, this was determined to be caused by some other plugin, and not vBSEO.
    good to hear
    My forums: General Forums | Admin Talk (running xenforo)

  10. #10
    vBSEO.com Webmaster Mert Gökçeimam's Avatar
    Real Name
    Lizard King
    Join Date
    Oct 2005
    Location
    Istanbul, Turkey, Turkey
    Posts
    22,367
    Liked
    542 times
    Blog Entries
    4
    Quote Originally Posted by Keith Cohen View Post
    Just as a followup, this was determined to be caused by some other plugin, and not vBSEO.
    Keith can you provide us with some more details like which plugin it is ?
    Mert Gökçeimam / Crawlability Inc.

    vBSEO 3.6.0 Alpha Önizlemesi - Including Like Tree
    Unveiling the NEW vBSEO Sitemap Generator 3.0 - available NOW for vBSEO Customers!


    Twitter:@Depkac
    Personal Blog : Mert Gökçeimam

  11. #11
    Senior Member BamaStangGuy's Avatar
    Real Name
    Brent Wilson
    Join Date
    Aug 2005
    Location
    Huntsville, Alabama
    Posts
    2,483
    Liked
    0 times
    Quote Originally Posted by Keith Cohen View Post
    Just as a followup, this was determined to be caused by some other plugin, and not vBSEO.
    lol...
    Btw, I would turn off vBSEO for now if your server is important to you.
    Apparently that would have done a whole lot of good....

  12. #12
    Senior Member
    Real Name
    Jan Jaap
    Join Date
    May 2006
    Location
    The Netherlands
    Posts
    132
    Liked
    0 times

    Post

    Quote Originally Posted by BamaStangGuy View Post
    lol...


    Apparently that would have done a whole lot of good....
    Yes, I am sorry for this, it was my fault.

    I only installed vBSEO and some plugin I wrote myself. As I am pretty experienced with writing secure scripts and I know about MySQL injection and normaly carefully escape all MySQL input I didn't aspect it was my plugin aldough I should also not have suspected a well developed script like vBSEO to not have secured the MySQL.

    I am verry verry happy with vBSEO, it's super well developed and more then I aspected! It's actualy almost perfect as far as I've seen it.

    Best Regards,
    Jan Jaap
    Last edited by Adult SEO; 11-12-2006 at 10:12 PM.

  13. #13
    Senior Member Brandon Sheley's Avatar
    Real Name
    Brandon Sheley
    Join Date
    Oct 2005
    Location
    Kansas
    Posts
    2,347
    Liked
    19 times
    Blog Entries
    1
    It's good to hear your site is secured again
    My forums: General Forums | Admin Talk (running xenforo)

  14. #14
    vBSEO Staff Ace Shattock's Avatar
    Real Name
    Ace Shattock
    Join Date
    Jul 2005
    Location
    Auckland, New Zealand, New Zealand
    Posts
    3,999
    Liked
    11 times
    I have edited the thread title and will close it now.

    The issue is resolved, and was caused by a plugin written by the OP.

    Unless you have some psychic link with Jan, your own forums are not at all at risk.

Similar Threads

  1. Syntax for Custom Rewrite Rules
    By Joe Ward in forum Custom Rewrite Rules
    Replies: 33
    Last Post: 02-10-2011, 09:49 PM
  2. vBSEO 2.0 RC7 Released
    By Juan Muriente in forum vBSEO Announcements
    Replies: 17
    Last Post: 09-09-2005, 12:00 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •