Vanilla 1 is no longer supported or maintained. If you need a copy, you can get it here.
HackerOne users: Testing against this community violates our program's Terms of Service and will result in your bounty being denied.
forum hacked/deleted by way of settings.php
my forum was taken down today by someone using a php exploit on settings.php
i don't have any better details, unfortunately, thats all the hosting company could tell me. wondering if this is a known issue, and how i can go about preventing it from
0
This discussion has been closed.
Comments
(a fix is here)
It seems we have an epidemic of extensions continously updating the configuration file. What extensions do you have installed? I'm sure one of them has this nasty habit.
ithcy's link for a fix would solve that problem as well as any others that might be around.
Its not exactly locking, but would prevent one Vanilla page load from trying to read settings.php while another instance is trying to write changes.