Jump to content
Search In
  • More options...
Find results that contain...
Find results in...
Sign in to follow this  
Alpha

MAJOR SECURITY PROBLEM FOUND & FIXED

Recommended Posts

I am not sure if anyone noticed it or not.. but there was a major security problem I forgot to fix when I changed servers.

As most of you remember the link to the forum use to be:

[url="http://216.127.72.111/~admin7/forum/"]http://216.127.72.111/~admin7/forum/[/url]

Later on I changed the link to /phpBB2/ but the /forum/ link would automatically redirect to it.

When I changed servers.. it accidently copied the old file set for phpBB on to

/forum/

so if you would go on: [url="http://216.127.72.111/~admin8/forum/"]http://216.127.72.111/~admin8/forum/[/url]

You would get a different looking forum then:

[url="http://216.127.72.111/~admin8/phpBB2/"]http://216.127.72.111/~admin8/phpBB2/[/url]

Luckily I was able to fix the problem fast and easy. However it seems that everyone was using the new link, thankfully. But if any unknown person found this problem before I did.. it could be disaster. I mean.. you wouldn't even need to be a hacker, but since the files are so different.. it would just alter the database right when you go to the other link.

Now when you click that old link.. it will just popup the redirect screen. :)
And most of all... there should never be any problems like this coming up, now that we have prevented it.

Share this post


Link to post
Share on other sites
in the update of the PHP it makes you delete the important files before you can activate your boards.

PM sent gc.

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Sign in to follow this  

×
×
  • Create New...