Jump to content

Recommended Posts

Posted (edited)

Hi everyone.

Somebody alerted us with a hole in our IPB4 installation with a SQL injection :

image.png.03945b37f14fdeed9705f954dc90473b.png

We don't know how it dit it... and he claimed us a bonus in € for his help.

Our version is 4.4.10 at the moment.

Could you help me and / or advise us ?

Edited by RGS
Posted

Hello,

This is not an SQL injection - he supplied a username that was longer than we are able to store in the login log column. We'll address this as a bug, but there's no security concern here.

Thanks

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...