Site Links
Home
Features
Documentation
Pricing & Order
Members Area
Support Options
UBBDev.com
UBBWiki.com
Who's Online
1 registered (Jake), 38 Guests and 14 Spiders online.
Key: Admin, Global Mod, Mod
Featured Member
Registered: 12/20/03
Posts: 4424
Top Posters (30 Days)
Ruben 51
Gizmo 24
DennyP 24
Dunny 15
SteveS 13
AllenAyres 12
SD 10
dbremer 10
drkknght00 9
doug 8
Latest Photos
OK Corral Shoot Out
Testing
Basildon Train Station
Basildon Town Centre looking from the rounderbout
Basildon Town Square
Page 4 of 4 < 1 2 3 4
Topic Options
#227635 - 07/12/09 06:15 PM Re: Can i fix this?? [Re: Ruben]
Gizmo Offline

Registered: 06/05/06
Posts: 14995
Loc: Portland, OR; USA
As Ruben said, previous versions of .t6 have security issues; I believe the latest build of v6 (v6.5.5) is fine.

AS for classic, you'll get the captcha broken easily by spammers.
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
Express Hosting
Express Hosting "We are the official hosting company of UBB.threads. Ask us about our free migration services to migrate your UBB.threads installation."
#227636 - 07/12/09 07:42 PM Re: Can i fix this?? [Re: Ruben]
JAISP Offline
old hand
Registered: 02/10/07
Posts: 1144
Originally Posted By: Ruben
I do know ubb threads 6.x has a security risk in one of the scripts.
I believe it is "addpost_newpoll.php".


Yes you are correct. I also think there was or still is a security risk on the Threads where it points from the old classic to the threads on the import script. This is not an issue with my threads boards as I have a direct forward to the new board from the old one without integration between them.

The "addpost_newpoll.php" security risk allowed people to gain several types of access to your boards including spamming without an account on the system. I see several attempts on this security hole daily even though the problem has been fixed a long time ago.

No matter what your running or how good it is your always open to some sort of exploit if someone really wanted to take the time to find one.
Top
Page 4 of 4 < 1 2 3 4



Shout Box

Today's Birthdays
No Birthdays
Recent Topics
Temporary Password email not being received
by
05/24/12 10:02 PM
Ability to "like" individual posts (not Facebook "likes)
by doug
05/23/12 09:03 AM
Island Permissions
by ThreadsUser
05/22/12 03:03 PM
streaming video
by prkrgrp
05/20/12 07:02 PM
New Posts Corrupted? Can someone help?
by PianoWorld
05/19/12 09:41 AM
Forum Stats
10492 Members
36 Forums
33842 Topics
181709 Posts

Max Online: 978 @ 06/24/07 11:19 PM
Random Image