
A recent vBulletin 4 (Suite Only, all versions) report indicated that there is a potential permission exploit vector in the Blogs portion of the product. Once the cause of the issue was isolated, additional permissions checks were added to eliminate the reported threat.
The issue does not affect vBulletin 3.x, or vBulletin 4 Forum Classic. It affects only the Blogs product.
This patch has been issued for vBulletin versions 4.0.0 through 4.1.9. The code change has been included in 4.1.10, which will not need to be patched.
To improve the security of your vBulletin 4 Suite installation please download the patch from the members area of vBulletin: Please Log In
We recommend you install this security patch as soon as possible.
The...