Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Security - PHP Nuke
Author Message
Beyhude
New Member
New Member



Joined: Dec 03, 2004
Posts: 3

PostPosted: Mon May 08, 2006 1:24 pm Reply with quote

hello

my webpage is hacked

used module is news...

I am using page numbers news, and nuke number is 7.0.

for security, I use sentinel and chatserv's actuel patchs of nuke version 7.0. I have change of $prefix ve $user_prefixes of Nuke 7.0, also, I have made hissedn to file of config.php...

That is all my security prevention.


I am using old pach version of mainfile.php. When I install latest version of patch I am getting just a blank page. Error message is; Fatal error: Cannot redeclare opentable() (previously declared in c:\appserv\www\nuke\themes\UltraNuke\tables.php:30) in c:\appserv\www\nuke\themes\UltraNuke\tables.php on line 27

I don't know reason of this error...


so, second problem;

when I have check the sentinel I have seen a new inquiry...

that was; [ Only registered users can see links on this board! Get registered or login! ] By D3ngsz&topic=7&assotop=Array&catid=0&ihome=0&acomm=0&alanguage=turkish&hometext=<script language=\"JavaScript\">

in this situation what can you offer me?

thanks a lot...
 
View user's profile Send private message Visit poster's website
Raven
Site Admin/Owner



Joined: Aug 27, 2002
Posts: 17088

PostPosted: Mon May 08, 2006 10:30 pm Reply with quote

If you were using the HTTPAuth admin protection in NukeSentinel(tm) you would not have been hacked that way.
 
View user's profile Send private message
Beyhude







PostPosted: Tue May 09, 2006 12:43 am Reply with quote

I am using the HTTPAuth admin protection in NukeSentinel(tm).
 
Raven







PostPosted: Tue May 09, 2006 1:19 am Reply with quote

There's no way that you could have been hacked through admin.php if you have it installed correctly. When you try to go into admin.php do you get the NukeSentinek(tm) prompt and then the regular admin.php prompt?
 
Beyhude







PostPosted: Tue May 09, 2006 5:53 am Reply with quote

sentinel is working, without problem...result of hacked of my webpage, my messages have been changed on the news module...
 
Raven







PostPosted: Tue May 09, 2006 10:36 am Reply with quote

Normally they can only change the news stories if they got into admin.php. You must have a hole somewhere else.
 
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Security - PHP Nuke

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©