Sinisterly
MyBB 0Day - Printable Version

+- Sinisterly (https://sinister.ly)
+-- Forum: General (https://sinister.ly/Forum-General)
+--- Forum: The Lounge (https://sinister.ly/Forum-The-Lounge)
+--- Thread: MyBB 0Day (/Thread-MyBB-0Day--47360)

Pages: 1 2


MyBB 0Day - craig1985 - 02-16-2013

Hey guys I run a MyBB forum and know about the file upload 0day being released, does anybody have it that knows what I can do to fix my site before it gets attacked

MAny thanks in advance


RE: MyBB 0Day - 1llusion - 02-16-2013

(02-16-2013, 11:48 PM)craig1985 Wrote: Hey guys I run a MyBB forum and know about the file upload 0day being released, does anybody have it that knows what I can do to fix my site before it gets attacked

MAny thanks in advance

Disable file uploads and check logs for unusual behavior


RE: MyBB 0Day - craig1985 - 02-16-2013

Awesome thanks 1llusion, will sort it now


RE: MyBB 0Day - Madderc - 02-17-2013

Can I ask what that MyBB 0day is and what it can do?


RE: MyBB 0Day - Anima Templi - 02-17-2013

(02-17-2013, 05:16 AM)Madderc Wrote: Can I ask what that MyBB 0day is and what it can do?

Read here.

http://www.hackcommunity.com/Thread-Question-What-is-that-MyBB-0day-exactly


RE: MyBB 0Day - Madderc - 02-17-2013

(02-17-2013, 11:00 AM)Anima Templi Wrote:
(02-17-2013, 05:16 AM)Madderc Wrote: Can I ask what that MyBB 0day is and what it can do?

Read here.

http://www.hackcommunity.com/Thread-Question-What-is-that-MyBB-0day-exactly

eheh thanks, I posted that after I asked it here Tongue


RE: MyBB 0Day - 1llusion - 02-18-2013

I've made an article on my blog about the vuln. Read it here: http://blog.1llusion.info/2013/02/mybb-file-upload-0day-is-it-real-and.html


RE: MyBB 0Day - Madderc - 02-18-2013

(02-18-2013, 12:19 AM)1llusion Wrote: I've made an article on my blog about the vuln. Read it here: http://blog.1llusion.info/2013/02/mybb-file-upload-0day-is-it-real-and.html

Wow thanks a lot, that really did explain most of it I think.

On a side note, what exactly does file uploading do? Does it mean people sharing stuff through the forum?


RE: MyBB 0Day - 1llusion - 02-18-2013

(02-18-2013, 03:49 AM)Madderc Wrote:
(02-18-2013, 12:19 AM)1llusion Wrote: I've made an article on my blog about the vuln. Read it here: http://blog.1llusion.info/2013/02/mybb-file-upload-0day-is-it-real-and.html

Wow thanks a lot, that really did explain most of it I think.

On a side note, what exactly does file uploading do? Does it mean people sharing stuff through the forum?

File upload is... well... file upload. It is a vulnerability through which somebody can upload some stuff on your server.


RE: MyBB 0Day - craig1985 - 02-18-2013

(02-18-2013, 12:19 AM)1llusion Wrote: I've made an article on my blog about the vuln. Read it here: http://blog.1llusion.info/2013/02/mybb-file-upload-0day-is-it-real-and.html

Just read the article, great read Smile