Security Issue


Subject: Security Issue
Hello there i have some security issues in my site....

Somebody is able to upload a file named a.php in my public_html folder an then executes it...
Then Thusands of mails are being sent from my mailserver

I' attaching the file...

How can i rescue myself from him?

In the folder i found this script only the owner had write and execute permissions...

Please help me i can't find a solution

Thanks a lot!

Subject: Re: Security Issue
php.ini register_globals = Off

or

new .htaccess disables register_globals

Subject: Re: Security Issue
thanks a lot diffus...is this the only thing i have to change?

Subject: Re: Security Issue
borbo wrote: [View Post]
thanks a lot diffus...is this the only thing i have to change?


delete a.php file :D

Subject: Re: Security Issue
where is the php.ini located?

ps. I think that its a file in /etc/apache...or something in a linux box :shock:

Subject: Re: Security Issue
borbo wrote: [View Post]
where is the php.ini located?

ps. I think that its a file in /etc/apache...or something in a linux box :shock:


yes it is in server.if you cannot to edit it

you can apply new patch from here http://www.icyphoenix.com/dload.php?action=file&file_id=6

Subject: Re: Security Issue
I think i ve applied all patces exchept htaccess...

I'm uploading htaccess now...

Is there any way to find if my site is vulnerable ?

Subject: Re: Security Issue
I think i ve applied all patces exchept htaccess...

I'm uploading htaccess now...

Is there any way to find if my site is vulnerable ?

Subject: Re: Security Issue
borbo wrote: [View Post]
I think i ve applied all patces exchept htaccess...

I'm uploading htaccess now...

Is there any way to find if my site is vulnerable ?



version 058a is secure

read http://www.phpBBXS.eu/viewtopic.php?t=461


Page 1 of 1


  
You cannot post new topics
You cannot reply to topics
You cannot edit your posts
You cannot delete your posts
You cannot vote in polls
You cannot attach files
You can download files
You cannot post calendar events

   

This is a "Lo-Fi" version of our main content. To view the full version with more information, formatting and images, please click here.

Powered by Icy Phoenix based on phpBB
Generation Time: 0.2085s (PHP: 11% SQL: 89%)
SQL queries: 10 - Debug Off - GZIP Enabled