| |
| | |

CodersClub

 Forgot password?
 Register
Search
View: 15591|Reply: 20
Collapse the left

Discuz is vulnerable to SQL injection!!!! admins please read.

[Copy link]
Post time: 2013-09-24 16:07
| Show all posts |Read mode
i hope you all know about sql injection and what it can do..
anyways in short.
i lost my database recently.
i used a backup and increased the security but the problem came again and again.
vot told me that someone had an access to my site.
but then if thats possible then one can easily empty my public_html folder but that wasnt the case.
also he could delete my database too.but the hacker did not.
than one thing thats left is sql injection.
i think discuz is vulnerable to sql injection.
is there any way to fix it.~ or anyone has any suggestion or patch on how to prevent it.????
id really like to discuss on this matter this is getting serious.
 Author| Post time: 2013-09-26 15:44
| Show all posts
pgangwani35 2013-9-26 12:43
Only Antivirus company can protect u (QUICK HEAL)

You dont get it bro.such softwarer are only fort personal computers not for web servers.it protects the computer from web server viruses not web server from viruses

 Russia

Post time: 2013-09-24 19:44
| Show all posts
A vulnerability may appear not because of Discuz,
but because of stolen password, or not closed access to critical utilities like install, update, restore, phpmyadmin, etc.
... or because of non-verified uploads enabled, i.e. hacker's shell...
 Author| Post time: 2013-09-24 23:20
| Show all posts
vot 2013-9-24 21:44
A vulnerability may appear not because of Discuz,
but because of stolen password, or not closed acce ...

Now that i have re installed my forum to new.and re setted my account
what should i do other than passwords strong thingy ?
 Author| Post time: 2013-09-25 05:00
| Show all posts
vot 2013-9-24 21:44
A vulnerability may appear not because of Discuz,
but because of stolen password, or not closed acce ...

Also is discuz vulnerable to it? The question remains still

 Russia

Post time: 2013-09-25 06:59
| Show all posts
I'm sure that ANY software is vulnerable, including Discuz.

But I do not know about SQL injection in x2.5++.
 Author| Post time: 2013-09-25 12:49
| Show all posts
vot 2013-9-25 08:59
I'm sure that ANY software is vulnerable, including Discuz.

But I do not know about SQL injection i ...

you got any tips how to boost site security????
how about adding an ssl certificate
http://startssl.com provides free ssl certificates for 1 year...but how to install one on a site????
if it helps then yipee....

 Russia

Post time: 2013-09-25 13:18
| Show all posts
1) Search in Google:
how to protect my site from hackers

2) SSL certificate can not protect your site. It is only for creating a secure connection.
 Author| Post time: 2013-09-25 17:27
| Show all posts
vot 2013-9-25 15:18
1) Search in Google:
how to protect my site from hackers

okay.
by the way what have you thought on how to stop the forum spams which are spreading here???
any counter measures from your side?

 Russia

Post time: 2013-09-25 19:05
| Show all posts
It is not "by the way", it is offtopic here
(Create new thread)

Comments

Why not split my post?  Post time 2013-09-25 19:17

 Russia

Post time: 2013-09-25 19:24
| Show all posts
Why not split my post?

It's YOUR post, so it's not my job, but YOURS.
You have to log in before you can reply Login | Register

Points Rules

Archive|Mobile|Dark room|CodersClub

Top.Mail.Ru
Top.Mail.Ru

2024-11-23 10:23 GMT+3 , Processed in 0.098033 sec., 11 queries .

Powered by Discuz! X3.4 Release 20230520

© 2001-2024 Discuz! Team.

MultiLingual version, Rev. 4301, © codersclub.org

Quick Reply To Top Return to the list