Email from server saying "Account compromised" because of Gallery. Email from server saying "Account compromised" because of Gallery.
 

News:

cpg1.5.48 Security release - upgrade mandatory!
The Coppermine development team is releasing a security update for Coppermine in order to counter a recently discovered vulnerability. It is important that all users who run version cpg1.5.46 or older update to this latest version as soon as possible.
[more]

Main Menu

Email from server saying "Account compromised" because of Gallery.

Started by Delia_35, November 24, 2014, 11:15:35 PM

Previous topic - Next topic

0 Members and 2 Guests are viewing this topic.

Delia_35

Hi, I got an email from my server company saying that they closed off my site to the public and wouldn't unlock it till I fixed some "Known exploits". I had been running an old copy of Coppermine, but I installed the newest version and that fixed everything except for this:

# Known exploit
'/home/scarlett/public_html/photogallery/include/import.php'
# Known exploit
'/home/scarlett/public_html/photogallery/include/stats.cgi'


Can someone tell me how to fix these? What the problem might be? I'd like to get my site out of internet prison. =\

Joe Carver

Those two files are not part of Coppermine 1.5.34.
You could start by comparing a local copy of cpg to what is on your server.

See the thread: Yikes, I've been hacked! Now what?



Delia_35

Quote from: Joe Carver on November 25, 2014, 12:23:07 AM
Those two files are not part of Coppermine 1.5.34.
You could start by comparing a local copy of cpg to what is on your server.

See the thread: Yikes, I've been hacked! Now what?

Ooohh. Thank you! That's what I get for not upgrading regularly.

ΑndrĂ©