Post by tarikaone » Fri Jun 19, 2015 9:20 pm

Happened on a few sites now, the controller script in admin for the payment method 'Authorize (AIM)' is renamed to this authorizenet_aim.php_ some how and the method is enabled. The most concerning thing is that this specific method accepts card details right on the site, can this please be flagged as a possible exploit? or it is just a known bug with OC 2.0.2.0?

Steve

Newbie

Posts

Joined
Fri Mar 07, 2014 6:01 pm

Post by IP_CAM » Sun Jun 21, 2015 4:12 am

There have been reports on such THINGS, related to Authorize, so, make sure, not to run an infected Shop, for some Reason.
You could have get infected, i.E., by installing a Mod, or Theme, obtained somewhere (not OC!), possibly modified by Someone, for some Reason. But since nobody know's, exept for you, it's only guessing.

If you have a problem, the only way to solve it, would be, to download the entire Site-Content, to your PC, then, compare it's total Content, every single file, with your Backup, you hopefully have.

That's all, good luck, and take time, you'll need it ;)
Ernie
ipc.li/shop/

My Github OC Site: https://github.com/IP-CAM
5'200 + FREE OC Extensions, on the World's largest private Github OC Repository Archive Site.


User avatar
Legendary Member

Posts

Joined
Tue Mar 04, 2014 1:37 am
Location - Switzerland

Post by GraemeH » Wed Oct 28, 2015 9:00 pm

Hi,

We got caught with this too. See the below thread for more info.

viewtopic.php?f=179&t=147282

Also check your database for a couple of extra tables that may have been added.

New member

Posts

Joined
Fri Apr 20, 2012 4:56 pm
Who is online

Users browsing this forum: No registered users and 174 guests