1
dyoungers
Re: Open holes and hacked
  • 2007/6/2 14:59

  • dyoungers

  • Just popping in

  • Posts: 1

  • Since: 2005/2/5 1


timely thread ... I've been hacked twice in the last two weeks as well (after years of running xoops)

Found this thread after figuring out from the server logs that in the most recent attack that they had used the spaw editor embedded in xt_conteudo to insert a new home page.

I've deleted the spaw editor but have left xt_conteudo installed with no wysiwyg editing since I have a fair amount of content under it ... anyone know whether there are any other holes in it? (I have protector installed as well)

also with regard to phpsuexec ... I have also chmod 755 on all the folders that were previously writable and the site seems to be working so that suggestion appears to be a good idea as well :)

Thanks for all the tips!

Dave




TopTop



Login

Who's Online

207 user(s) are online (144 user(s) are browsing Support Forums)


Members: 0


Guests: 207


more...

Donat-O-Meter

Stats
Goal: $100.00
Due Date: May 31
Gross Amount: $0.00
Net Balance: $0.00
Left to go: $100.00
Make donations with PayPal!

Latest GitHub Commits