Results 1 to 10 of 17
Hybrid View
-
17th Sep 2009, 12:59 AM #1OPMemberWebsite's:
rootw.netddlcms exploit
Does anyone know the ddlcms exploit so i can patch it?
narutoroot Reviewed by narutoroot on . ddlcms exploit Does anyone know the ddlcms exploit so i can patch it? Rating: 5
-
17th Sep 2009, 01:06 AM #2Respected Developer
If you can patch exploits it shouldn't be hard to find the exploit if any exist
-
17th Sep 2009, 01:10 AM #3OPMemberWebsite's:
rootw.netof c ourse i want like what to replace and stuff. plus i dont have time to look through the whole script lol
-
17th Sep 2009, 01:17 AM #4Member
Yes there are exploits for it.
▄▀▄ HosterBin Inc.
▄▀▄ Webs Hosting, VPS, Dedicated Servers
▄▀▄ http://www.hosterbin.com support@hosterbin.com
-
17th Sep 2009, 01:19 AM #5Respected Developer
Can you even confirm someone has found an exploit in the script and isn't just exploiting poorly secured sites (server config or whatever)? Well either way, I doubt any of us will go trough every line of code to find out.
-
17th Sep 2009, 01:27 AM #6Member
There is an exploit out there for this script that i can download their sql with all submissions ect.
▄▀▄ HosterBin Inc.
▄▀▄ Webs Hosting, VPS, Dedicated Servers
▄▀▄ http://www.hosterbin.com support@hosterbin.com
-
17th Sep 2009, 01:30 AM #7OPMemberWebsite's:
rootw.net
-
17th Sep 2009, 01:32 AM #8Respected Developer
http://www.ddlcms.com/forums/index.p...rum=2&topic=94
Turn off allow_url_include on your host. Ask your host or go to your php.ini to change it to off. You can also do it via WHM, go to PHP Configuration Editor, then click on Advanced. Turn allow_url_include to "off" and then click Save.
Something about configuration *cough*...
-
17th Sep 2009, 01:39 AM #9OPMemberWebsite's:
rootw.net
-
17th Sep 2009, 02:13 AM #10Member
Two things,
There is probably always an exploit in some code, and that's one of them. DDL CMS I think has it patched in an upcoming release which is apparently right around the corner.
Second all this does is allow somebody to download your SQL database...which quite frankly I could careless about. Good luck trying to hack anything from that database, and besides most sites using this will have just a big warez database of files which you can upload to your site lol.
Anyhow good that it's being fixed.
Sponsored Links
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Similar Threads
-
0-day WHCMS exploit
By shadow.prx in forum General DiscussionReplies: 3Last Post: 1st Jun 2012, 01:21 AM -
Windows RDP Exploit
By JamesVaporH in forum Hosting DiscussionReplies: 0Last Post: 18th Mar 2012, 05:57 PM -
WHMCS Exploit attacks.
By dotvps in forum Hosting DiscussionReplies: 21Last Post: 10th Dec 2011, 12:24 PM -
[Selling] [Exploit] Hot Exclusive YouTube Exploit [New]
By Goob3r in forum Completed TransactionsReplies: 1Last Post: 24th Aug 2010, 04:21 PM -
Buying exploit
By mr.oug in forum Completed TransactionsReplies: 6Last Post: 28th Dec 2008, 09:37 AM
themaLeecher - leech and manage...
Version 5.03 released. Open older version (or...