Go Back   Webmaster Forums UK SEO SEM Webmaster Community Forum - UKWW > General > General Webmaster Talk
Register FAQ Members List Downloads Calendar Today's Posts Webmaster Resources Webmaster Blogs
 
 

General Webmaster Talk General webmaster discussion forums - In this forum and its sub forums you can discuss general webmaster related issues or even issues that does not related to Webmastering.
Sub Forums: Running a forum :: Blogs and Blogging :: Word Press Forums :: Digital Photography

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 07-12-2006, 02:13 PM
Piotreksan
Guest
 
Posts: n/a
Exclamation Simpleboard, ExtCalendar + Joomla ver. 1.0.10 HACKED!

Hello,

Just found out that on the web...

This is a quote from Phil Taylors email:
Quote:
"It is not often I write a personal plea in an email, but if I could give you
guys one bit of advice for today it would be this.

IF YOU ARE RUNNING ANY OF THE FOLLOWING JOOMLA COMPONENTS THEN PLEASE
CONTACT ME ASAP! (Or research using the links at the bottom of this letter)

* Simpleboard
* ExtCalendar
* Any version of Joomla less than version 1.0.10

## IF YOU ARE RUNNING THESE YOUR WHOLE SITE CAN BE HACKED! ##

(NOTE: None of these products are created by Phil Taylor, there are no known
security issues of this type in Phil Taylor components)

Today I have had the enduring task of fixing five hacked websites, all the
hacks were using well (now) know security holes (Which are just plain bad
programming on the part of the developers) in the above two Joomla
Components. Also running any version of Joomla less that the latest v1.0.10
version can also allow other attack attempts to be made.

If you need assistance in upgrading to Joomla 1.0.10 we would be happy to
help - we do loads of these a week!

Else, if you are running SimpleBoard or ExtCalendar then you should
remove/replace/fix/patch the files to stop hackers gaining access to your
server.

Here are some links to help you research:

http://www.phil-taylor.com/FixMySite/
* Simpleboard = http://forum.joomla.org/index.php/topic,75668.0.html
* ExtCalendar = http://forum.joomla.org/index.php/topic,75390.0.html
* Joomla = http://www.joomla.org/content/view/1510/74/

If you dont have any of the above, ignore this article! :-) "

From what I've read so far it might be fixed by placing

Code:
/** ensure this file is being included by a parent file */
defined( '_VALID_MOS' ) or die( 'Direct Access to this location is not allowed.' );
On the top of com_extcalendar/extcalendar.php

But even the developer team is not fully sure about it....

Anyway, feel warned!

Best Regards,
Piotrek
Digg this Post!Add Post to del.icio.usStumble this Post!Wong this Post!
Reply With Quote
Reply

Bookmarks



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Webmaster Resources
UK WW SEO Tools
Find UK Hosts
 
The Forum Rules
Forum Rules - MUST READ
 
Site Of the Month
BizzFace
Nominate site of the month
 
Tag Cloud
ad exchange affiliates audio ads bid bidding directory bid directory list bid for position business clothes dedicated servers delisted designer directory links wanted discount executive suites finance google handbags internet and marketing internet marketing iphone jewelry link exchange nokia n95 paid blogging phones electronics replica samsung sem seo seo company sunglasses teac cd recorder uk property writer wallets web web design web development website development website promotion wholesale yahoo backlink

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
eBay hacked temi General Webmaster Talk 3 09-27-2007 08:51 PM
AT&T customer db Hacked temi General Webmaster Talk 0 08-30-2006 09:50 AM
one-third of website can be easily hacked temi General Webmaster Talk 2 04-28-2006 03:49 PM
HAHAHAHAHA Google Hacked! Paul_KY General Search Engine Discussions 11 07-05-2005 07:31 PM
phpbb hacked ovi General Webmaster Talk 11 05-27-2005 05:37 AM


All times are GMT. The time now is 07:06 AM.

UK Webmaster World Forums - Internet marketing, web development, domain names, SEO contest and discussuons.
Subscribe to our feeds   Subscribe to our feeds

Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.1.0