Simple Machines Community Forum

SMF Development => Bug Reports => Fixed or Bogus Bugs => Topic started by: Dacan on January 03, 2009, 02:50:48 PM

Title: SMF 1.1.7 Vulnerability? be real?
Post by: Dacan on January 03, 2009, 02:50:48 PM
Whether or not there is a vulnerability that have SMF 1.1.7 is that I've heard a lot about that. Sql injeccion or profiles. what's?.

I do not write English very well but I hope that they understand.
   
Greetings, Dacan  ;)
Title: Re: SMF 1.1.7 Vulnerability? be real?
Post by: metallica48423 on January 03, 2009, 02:57:07 PM
We're not currently aware of any 1.1.7 exploits.  Would you mind posting links to where you've seen such?

Thanks
Title: Re: SMF 1.1.7 Vulnerability? be real?
Post by: Dacan on January 06, 2009, 08:28:16 AM
Spanish:
http://www.simplemachines.org/community/index.php?topic=280086.0
http://www.simplemachines.org/community/index.php?topic=278740.0

English:
http://www.simplemachines.org/community/index.php?topic=279068.0

       
I hope you can help me, I speak Spanish, only speak a little English.

Greetings, Dacan  ;)
Title: Re: SMF 1.1.7 Vulnerability? be real?
Post by: karlbenson on January 06, 2009, 05:01:38 PM
Link 1: the host was compromised
Link 2 & 3 were an exploit in 1.1.6 and below.

If your using 1.1.7 and (weren't compromised before you upgraded), then your forum should be fine.