Python Forum
Security finding - Printable Version

+- Python Forum (https://python-forum.io)
+-- Forum: Forum & Off Topic (https://python-forum.io/forum-23.html)
+--- Forum: Board (https://python-forum.io/forum-26.html)
+--- Thread: Security finding (/thread-26436.html)



Security finding - sec_researcher - May-01-2020

Hi admins, please contact me as I found a security issue on this forum that i'd like to report.


RE: Security finding - micseydel - May-01-2020

You can use the private inquiries section.


RE: Security finding - millpond - Jun-11-2020

(May-01-2020, 04:53 PM)sec_researcher Wrote: Hi admins, please contact me as I found a security issue on this forum that i'd like to report.
What version of MyBB?

I use an older one (1.6) but would like to know of any problems.


RE: Security finding - snippsat - Jun-11-2020

(Jun-11-2020, 04:51 AM)millpond Wrote: What version of MyBB?

I use an older one (1.6) but would like to know of any problems.
More info here,it's not about MyBB version but a Git hack.
We have done a fix for this.


RE: Security finding - buran - Jun-11-2020

@snippsat - I don't think @millpond can access private inquires section of the forum


RE: Security finding - snippsat - Jun-11-2020

(Jun-11-2020, 01:06 PM)buran Wrote: @snippsat - I don't think @millpond can access private inquires section of the forum
Registered users has this allowed actions in private inquires:View, Post Thread, Post Replies Wink


RE: Security finding - buran - Jun-11-2020

(Jun-11-2020, 01:16 PM)snippsat Wrote: Registered users has this allowed actions in private inquires:View, Post Thread, Post Replies

yes, but only what they post :-) Otherwise it's not really private, right?

Quote:This forum allows you to talk privately with staff about any issues you have relating to the forum
Threads you post here can only be seen by yourself and staff, everything within this forum is confidential.



RE: Security finding - snippsat - Jun-11-2020

(Jun-11-2020, 01:34 PM)buran Wrote: Threads you post here can only be seen by yourself and staff, everything within this forum is confidential.
That's right forgot about for a moment Blush


RE: Security finding - metulburr - Jun-13-2020

@[millpond]
It doesnt have anything to do with default MyBB. It was something we added and now removed. A .git directory.