I think this was a REALLY bad move on their part. They admitted they knew an exploit was wrong but didn't have the means to fix it. This does nothing but reinforce the negative thoughts about their crappy programming code.