Issues with forum image uploader.

Status
Not open for further replies.

Spark

HPIC - Hatas gonna Hate
Staff member
Administrator
Super Mod
Moderator
Joined
Oct 2, 1998
Messages
15,054
From vBulletin
It has come to our attention that there is a security issue in the uploader.swf file included as part of the Yahoo User Interface (YUI) library included in vBulletin 4. As the version of YUI included in vBulletin is end-of-lifed, Yahoo will not be fixing this issue. Their recommendation is to remove the file from your server. We recommend that you replace this with an empty file of the same name (attached). What this will do is force vBulletin to use a fallback javascript based uploader which is already provided in your system.

See: http://yuilibrary.com/support/20131111-vulnerability/

The vulnerable file is also present in the vBulletin 5 download package though not used by the vBulletin 5 front-end. We recommend that you delete the file and replace it with the attached file.

We have also updated all download packages for vBulletin 4.X and 5.X with the new empty file.

To resolve this issue take the following steps:
[snip]
Note: We will not be fixing the vulnerability in the SWF file directly nor do we plan to take any other action on this issue at this time.

We've resolved this security issue but this may be related to the image upload issues that some of you are experiencing.

Until this is resolved at 100% I recommend using http://www.imgur.com as an image hosting fix - very easy to use and provides handy BBcode markup after the files are uploaded.
 
Curious, why do you not allow tapatalk hosted pictures? That makes it so much easier to post with a phone.
 
Hi Spark, I joined yesterday and upgraded to Gold right away. Could you please upgrade my membership. Thanks, Cheesehead
 
Can paid users just use File Upload Manager from the website ?

Image link from website

Problem was that the file was too large to even upload.
 
Last edited:
Onearmbladenut Onearmbladenut The thread in which you are posting is from years ago... it's a totally different site, now, run on a different platform.
As a registered member, you'll want to use a photo host (imgur.com) - there are several explanations, how tos, and tutorials posted.
 
Onearmbladenut Onearmbladenut The thread in which you are posting is from years ago... it's a totally different site, now, run on a different platform.
As a registered member, you'll want to use a photo host (imgur.com) - there are several explanations, how tos, and tutorials posted.

True. The topics in this thread pertain to the old software.
Closed.
 
Status
Not open for further replies.
Back
Top