05
VBulletin resets issues emergency patches following violation, passwords
VBulletin Solutions crisis security patches. additionally released has reset the passwords for over 300,000 accounts on its web site following a security violation, and The organization ‘s Internet forum software is utilized on tens of tens of thousands of websites.
VBulletin Solutions didn’t immediately react to an inquiry seeking more details about their connection as well as the patches to the violation.
The organization says that more than 100,000 community sites are using vBulletin, including some managed by Zynga and other Arts, Sony Pictures, NASA, Valve Corporation, Electronic well known firms and organizations.
The business guided all users to upgrade their installations.
On Saturday, someone using the internet handle Coldzer0 maintained on various sites he endangered vBulletin.com and extracted info on nearly 480,000 users from its database.
The vBulletin.com newsgroup has 344,629 members, according to data shown on the website. This amount does not fit the one maintained by the hacker, but it is possible that in the database of the website more user entries existed for some reason.
user posted the listing.
After vBulletin a Twitter user utilizing the handle @_cutz printed the details of a remote code execution flaw in vBulletin that allegedly has existed for the last three years Tuesday. Cutz printed the details because “it is fixed now anyhow.”
It is not clear if they are the same defect, or whether the vBulletin patches address the vulnerability used by Coldzer0 or the one revealed by _cutz. But the administrators of vBulletin-established newsgroups should install the patches promptly as the probability of strikes is high.
There are no comments.