Description: This security mod will fix your forum so it cannot be hacked by a current or registering forum member.
The vulnerability allows members to enter specific text into some profile form fields to gain administrator access to the forum. Administrator rights grants the member access to the forum controls.
After installing this mod, the user will not be able to use this vulnerability any more. It converts these form fields to their HTML equivalent and removes line breaks, rather than writing them directly to the profile data (.vars) file.
Installation: 1) Modify YaBB files using BoardMod or manually. 2) Load modified files to your server in ASCII mode.