Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

December 15th, 2012, 11:31 GMT · By

BLOG

MyBB 1.6.9 Security Release Available for Download

SHARE:

Adjust text size:


Security update for MyBB Enlarge picture - Security update for MyBB
MyBB has released a security update for the 1.6 series. MyBB 1.6.9 addresses a high-risk SQL Injection vulnerability and a medium-risk CAPTCHA issue.

The SQL Injection vulnerability, which affected all MyBB versions, affected the post editing section. The second flaw allowed brute-force access because the CAPTCHA system was not effective.

frostschutz and StefanT have been credited for finding and disclosing these security holes.

An issue which prevented the editor from working in Firefox 16 and newer versions of the web browser has also been addressed.

Users are advised to immediately update their installations, but not before backing up their forum files and databases.

Those who identify similar vulnerabilities are advised to responsibly disclose them to the vendor via their contact page or via the Private Inquiries forum.

MyBB is available for download here.

TELL US WHAT YOU THINK:

1,612 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


PayPal Rewards Researcher with $5,000 for Finding Remote Code Execution Flaw

Stored XSS That Allowed Hackers to Hijack Tumblr Blogs Still Unfixed

Vulnerability Lab Researchers Find 1 Local, 2 Remote Flaws in Skype

Mozilla Addresses 6 Critical Vulnerabilities with the Release of Firefox 17

Microsoft Fixes DOM-Based XSS Flaw in Learning Site After Being Notified by Expert

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM