Web Wiz - Green Windows Web Hosting - Celebrating 25 Years!

  New Posts New Posts RSS Feed - What is going on?
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

What is going on?

 Post Reply Post Reply
Author
GemmaJF View Drop Down
Newbie
Newbie


Joined: 29 June 2005
Status: Offline
Points: 4
Post Options Post Options   Thanks (0) Thanks(0)   Quote GemmaJF Quote  Post ReplyReply Direct Link To This Post Topic: What is going on?
    Posted: 29 June 2005 at 7:40am
Hi there,
 
We had a post on our forum this morning from 'Tithackers'
 
The notification emails went out with a 'Tithackers' background Gif image and clicking on the posting again revealed the image not the usual forum layout.
 
What the hell is going on? Our access database is stored outside our root directory.
 
It appears that the culprit joined the forum and simply made a post, how do I protect against this happening again??
 
Back to Top
dj air View Drop Down
Senior Member
Senior Member
Avatar

Joined: 05 April 2002
Location: United Kingdom
Status: Offline
Points: 3627
Post Options Post Options   Thanks (0) Thanks(0)   Quote dj air Quote  Post ReplyReply Direct Link To This Post Posted: 29 June 2005 at 9:22am
firstly , make sure you are runing the latest version.

an also do you have a url that we can see also.


Back to Top
GemmaJF View Drop Down
Newbie
Newbie


Joined: 29 June 2005
Status: Offline
Points: 4
Post Options Post Options   Thanks (0) Thanks(0)   Quote GemmaJF Quote  Post ReplyReply Direct Link To This Post Posted: 29 June 2005 at 9:28am
Hi dj air,
 
I deleted the original posting and it he rejoined and did the same thing, all I have is the following cut a paste of the posting. I can't see how they could have got to the database it appears to be a defacement of the post. What you see on screen is their gif image, but a copy and paste reveals this:


  

 

 

UK Reptiles and Amphibians

 

 RAUK e-Forum : UK Reptiles and Amphibians

 

Topic: Look

Back to Top
dj air View Drop Down
Senior Member
Senior Member
Avatar

Joined: 05 April 2002
Location: United Kingdom
Status: Offline
Points: 3627
Post Options Post Options   Thanks (0) Thanks(0)   Quote dj air Quote  Post ReplyReply Direct Link To This Post Posted: 29 June 2005 at 9:35am
are you using V7.01 if so thats the problem, there was a hack done on V7.9, and then v7.91 came out that repaired the hole.

you best bet is to upgrade to V7.91
Back to Top
GemmaJF View Drop Down
Newbie
Newbie


Joined: 29 June 2005
Status: Offline
Points: 4
Post Options Post Options   Thanks (0) Thanks(0)   Quote GemmaJF Quote  Post ReplyReply Direct Link To This Post Posted: 29 June 2005 at 9:41am
OK I'll download it now, many thanks Wink
Back to Top
WebWiz-Bruce View Drop Down
Admin Group
Admin Group
Avatar
Web Wiz Developer

Joined: 03 September 2001
Location: Bournemouth
Status: Offline
Points: 9844
Post Options Post Options   Thanks (0) Thanks(0)   Quote WebWiz-Bruce Quote  Post ReplyReply Direct Link To This Post Posted: 29 June 2005 at 11:41am
It's not really a hack and he is not getting into your database.

The problem is that the person is using CSS to change the background image of the page by posting some CSS in their post.

Just delete the post and install version 7.91 to prevent the person from posting a simular post.

Version 7.91 has a new fileter to remove this type of CSS from posts and prevent it from running.
Back to Top
GemmaJF View Drop Down
Newbie
Newbie


Joined: 29 June 2005
Status: Offline
Points: 4
Post Options Post Options   Thanks (0) Thanks(0)   Quote GemmaJF Quote  Post ReplyReply Direct Link To This Post Posted: 29 June 2005 at 12:36pm
Thanks Borg, I didn't know about css but I guessed he wasn't in the database as I still had admin control and he was doing it using the post reply box each time by rejoining.
 
Now have 7.91 installed, many thanks guys Big smile
Back to Top
 Post Reply Post Reply

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.08
Copyright ©2001-2026 Web Wiz Ltd.


Become a Fan on Facebook Follow us on X Connect with us on LinkedIn Web Wiz Blogs
About Web Wiz | Contact Web Wiz | Terms & Conditions | Cookies | Privacy Notice

Web Wiz is the trading name of Web Wiz Ltd. Company registration No. 05977755. Registered in England and Wales.
Registered office: Web Wiz Ltd, Unit 18, The Glenmore Centre, Fancy Road, Poole, Dorset, BH12 4FB, UK.

Prices exclude VAT at 20% unless otherwise stated. VAT No. GB988999105 - $, € prices shown as a guideline only.

Copyright ©2001-2026 Web Wiz Ltd. All rights reserved.