Joomla! Discussion Forums



It is currently Tue Nov 24, 2009 2:46 pm (All times are UTC )

 




Post new topic Reply to topic  [ 2 posts ] 
Author Message
Posted: Wed Dec 20, 2006 1:39 pm 
User avatar
Joomla! Intern
Joomla! Intern
Offline

Joined: Tue Nov 07, 2006 5:14 pm
Posts: 81
Hi everyone,
I keep getting referrals each day (only one or two, but hey) from Google from somebody typing the following in as a search parameter: inurl:"com_smf".

I'm slightly concerned as to why somebody would be looking for any SMF forums wrapped in Joomla. Is this a potential security issue do you think? Is some script kiddie looking for SMF wrapped forums to take advantage of an exploit?

What do you think?

It's been going on for around 4 days now.

Cheers,
Chris.


Top
  E-mail  
 
Posted: Sat Feb 03, 2007 10:12 am 
I've been banned!
Offline

Joined: Thu Jan 18, 2007 4:43 am
Posts: 144
well....there good be a variety of benign reasons.

Someone developing a website with SMF may want to see others and get ideas, or ....

yeah ..probably some exploit: there have been some just recently patched with 1.1.1 that allow uploaders to enter Javascript cloaked as an image ( gif) which could then lead your browser to...

http://blogs.zdnet.com/security/?p=15


There is also a LONG OUTSTANDING code exposure issue with SMF as well, that allows anybody to see the source code of recently patched SMF files. (This is dangerous if, like some people, you actually hard code sensitive information INSIDE a php file, ie.


Top
  E-mail  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 2 posts ] 

Quick reply

 



Who is online

Users browsing this forum: No registered users and 4 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
cron
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group