quote:
Originally posted by Chrono
The current mybb release is just not safe, the spanish community (running the latest release) has been hacked a couple of times already (we are not php-gods like wdz (Smilie)).
Better wait for a safer release (Smilie)
It's most probably because of your server configuration with register_globals turned ON - any recent PHP install shoudln't, but because Dreamhost have to cater for all sorts of users and scripts, they have it on.
If you think this board is safe, all of the recent security notices which rely on register_globals being ON - can most probably be exploited here if they were actually ON.