Knowledgebase: How-To
vBulletin Template Hack
Posted by on 02 July 2012 12:55 PM

There is a vBulletin defacement attack where the main page is replaced with an alternate page. In these particular defacements, the files on the site aren't changed (index.php, .htacess or config.php), but rather the database template table is modified:

Description of the Hack

One customer, who kept correcting the database table kept getting hacked repeatedly, even after updating to the latest vBulletin. His solution was to remove the spacer_open template:

"Since they're using the spacer_open template, I decided I should stop using it in the vB files. Apparently it is unnecessary. Here is how to remove it from use:

http://www.vbulletin.org/forum/showthread.php?t=119286

Now they can hack it all they want and nothing will happen. I put their hacked code back in the template to test it. Hopefully this "fixes" the problem until they find something else to exploit."

(0 vote(s))
This article was helpful
This article was not helpful

Comments (0)
Post a new comment
 
 
Full Name:
Email:
Comments:
Help Desk Software by Kayako fusion
ERROR: This domain name (kb.asmallorange.com), does not match the domain name in the license key file help.asmallorange.com.

For assistance with your license, please contact the Kayako support team: https://support.kayako.com