Please upgrade here. These earlier versions are no longer being updated and have security issues.
HackerOne users: Testing against this community violates our program's Terms of Service and will result in your bounty being denied.
is my forum compromised?
Bud1
New
I'm a little concerned that my forum has been compromised. First, the other day, my settings.php file was broken causing my forum to go down; turns out it was missing a portion of the code near the bottom -- but I have not attempted to upload anything to my forum in quite some time and I don't suppose this is a file that gets rewritten automatically, so why should it have been altered at all? Its edited date on the FTP was the day my forum went down -- I did not FTP anything that day for certain.
Then different roles have different AVAILABLE permissions allotted to them -- not just different ones ticked -- but different ones showing altogether. One has an entirely unique permission: PERMISSION_SM_WRITE. None of the other roles have it. Is this normal?
After the first incident, my last logged in IP on my cPanel shows my IP only as the last having logged in -- so I don't think they're going through my cPanel. But are there some common security loopholes I need to shore up?
I'm on 1.1.5a. Will updating protect me or fix anything that has already been exploited?
Then different roles have different AVAILABLE permissions allotted to them -- not just different ones ticked -- but different ones showing altogether. One has an entirely unique permission: PERMISSION_SM_WRITE. None of the other roles have it. Is this normal?
After the first incident, my last logged in IP on my cPanel shows my IP only as the last having logged in -- so I don't think they're going through my cPanel. But are there some common security loopholes I need to shore up?
I'm on 1.1.5a. Will updating protect me or fix anything that has already been exploited?
0
Comments
@Mark may know...