• twitter image
  • facebook image
  • youtube image
  • linkedin image
  • RSS
Language: CMS Made Simple Czech CMS Made Simple France CMS Made Simple Spain CMS Made Simple Hungary CMS Made Simple Russia CMS Made Simple Netherlands

cmsmadesimple.org defacement

Sep 18, 2007 by Tatu Wikman
The fastest of you noticed the defacement of cmsmadesimple.org site several days ago. The site had been defaced by a script kiddie. The actual script that had been used was r57shell (google). Its a litlle tool one can use to upload / download and query stuff from the server. The script had been there for a while and gone unnoticed as it wasn't used for anything else than removing the log entries from that time :/ One thing is certain, the hole they have used is old, it looks like the FCKEditorX filemanager hole was used, but we cant be sure. We have checked that the release files are intact, and as far as we know no data has been compromised. We are still trying to dig more info about this incident, and are in the process of securing the server up a notch. Sorry about the problems.

© Copyright 2007 by CMSMS™ and the posts author(s). All rights reserved.


 Add a Review of this item 

Note: please supply comments related to the blog post above. Please use our community forum for items that are of a technical support nature. All items are screened for suitability by the CMSMS Dev team before publishing. Problem reports should be posted in our forge.

Comment Title:
Your Name:
Your Email Address:
Notify me of new comments to this page:
Additional Comments:

  These Comments are moderated, they will be posted as soon as we can review them. Thanks.

Are you human?
Please enter the text in this image into the field below.
This is a captcha-picture. It is used to prevent mass-access by robots. (see: www.captcha.net)



Arvixe - A CMSMS Partner