15
Assuming someone was able to decrypt the password they got from my site, and were then able to login, what is the 'worst' they can do ?
I don't have any "file manager" type modules, only headlines, smartsection, sitemap, contact form, and will put wflinks back later.
They can't upload any php files and then execute them can they ??
Or, modify any php files ?? If they ran a phpinfo, the website then is compromised, not just XOOPS part of it, because then they have the website login.
Is it only 'blocks' that can be changed, and then only with HTML code. I don't see how any PHP code can be added or changed, that's all.
I'd like to know the potential risks, .... considering changing the site to all HTML, .. maybe !!!
NO to the Microsoft Office format as an ISO standard. Sign the
petition