Login or create new account.

By registering on joomprod.com, you will have immediate access to all our free products and to the public side of our support forum.

Enjoy our subscriptions.

Each of our subscriptions allow you to enjoy the private side of the support forum and all the update of our products for a period ranging from 3 months to 1 year.

Payment And immediate download.

After subscribing to one of our subscription, the products are immediately downloadable.

Login

Or Register
Accueil / forum / Support / UserSubs Support / Vulnerability of adsmanager leads to deface

Support Availability Because we must sleep sometimes

Working days: Monday to Friday.
Reply time: Depending on the complexity of your support issue it's usually between a few hours to 48 hours.

Support is only guaranteed to paid subscribers

AdsManager - End of life

It is with great regrets that we have chosen to end the developpement of Adsmanager and its other associated components.

AdsManager is born 10 years ago and, as of today, the number of new subscriptions and downloads have fallen and we cannot maintain the component anymore.

All active subscribers will be able to continue enjoying support until the end of their subscription.

The components will be free and no support will be provided anymore for the other users.

×

Notice

The forum is in read only mode.

Vulnerability of adsmanager leads to deface

  • info@joymedia.lv
  • Topic Author
  • Offline
  • Silver
  • Silver
More
9 years 9 months ago #12490 by info@joymedia.lv
Vulnerability of adsmanager leads to deface was created by info@joymedia.lv
Hello my webpage gets defacing attacks. Hackers exploits a long known vulnerability of file upload in Adsmanager for Joomla.
I'm using:
Joomla 2.5.28
Adsmanager installation pack_silver_gold_adsmanager_281_unzipfirst.zip
Adsmanager 2.7.0 Stable
PaidSystem 2.7.0 Stable

General question: is there a PATCH for that?


I've inserted some .htaccess files in some directories to protect server from this exploit or at least block it.
Directories:
/images
/tmp
/tmp/plupload
More
9 years 9 months ago #12547 by loic
Hello,

The best solution is to update to the version 2.9.13 or later.

You can also download the component Admin Tools that add a security layer on your website.

And you can also apply the solution noted in an article here -> www.joomprod.com/news/273-security-issue...-on-old-version.html

Best regards.
Time to create page: 0.128 seconds
Powered by Kunena Forum