Joomla! Discussion Forums



It is currently Tue Nov 24, 2009 2:08 am (All times are UTC )

 




Post new topic Reply to topic  [ 3 posts ] 
Author Message
Posted: Wed Oct 10, 2007 11:35 pm 
User avatar
Joomla! Guru
Joomla! Guru
Offline

Joined: Thu Jun 01, 2006 9:28 am
Posts: 763
Location: Scotland
JContentSubscription Joomla Component 1.5.8 Multiply Remote File Include Vulnerability

Component    : com_jcs version 1.5.8 - payable component

Available from joomlaequipment.com (problem loading page)

Just posted on milw0rm http://www.milw0rm.com/exploits/4508

_________________
Geo

http://www.dalserf.org
http://www.improveyoursnooker.net


Top
   
 
Posted: Thu Oct 11, 2007 5:58 pm 
Joomla! Enthusiast
Joomla! Enthusiast
Offline

Joined: Sat Feb 18, 2006 3:31 pm
Posts: 227
It may be all versions prior to 1.5.9 because I was affected on a 1.5.7 install.


Top
  E-mail  
 
Posted: Fri Nov 09, 2007 10:35 am 
Joomla! Fledgling
Joomla! Fledgling
Offline

Joined: Sat Dec 23, 2006 12:50 am
Posts: 2
Hmmm... yup -  got a call from my webhosts [small UK company] who were very nice but told me to "fix the holes in your scripts"... apparently someone noticed a surge in outgoing mail use which turned out to be someone trying on that old chestnut of:

"click here to fill in your paypal details... " [yes and the pass please!] - I presume it was this -  I didn't get much of a run down - something to do with a paypal exploit anyway, maybe linked to the JContentSubs paypal component??

..all going to Australian email addresses apparently and 1000s of them went in the 6 or so hours before some alert techie spotted the spike.

Thing is whatever they did has crashed my site... spent 8 hours getting it working again today.

I noticed some web traffic arriving not at the site pages but the web stats showed a glut of hits to one of the [many] components/bots script addresses. I think in hindsight this was a scan for the JContentSub vunerability -  shame I did not shut the thing down when I saw these attempts... ho-hum.

Beware... I'm skipping the whole thing till it's been well beta'd -  which it obviously wasn't [and they charge!!]


Top
  E-mail  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 3 posts ] 

Quick reply

 



Who is online

Users browsing this forum: No registered users and 7 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group