Exploit allowing creation of random folders in httpdocs?
Posted: Mon May 02, 2011 11:59 pm
Hi,
I'm aware of the domPDF and fckeditor exploits and both my opencart websites have those file removed. However I've recently discovered a random folder on both my both my websites that use opencart (1.4.5 on one and 1.4.9.4 on the other).
The folder seemed to be a modified version of my site that pulled in images from lots of other sites. For example from the google cache (as the folder has now been removed from my site):
http://webcache.googleusercontent.com/s ... ogle.co.uk
Anyone got any ideas how this might have happened? Is there a known exploit that I'm not aware of, or is this something new?
As a precaution I've renamed my admin folder just in case.
Thanks,
Gary
I'm aware of the domPDF and fckeditor exploits and both my opencart websites have those file removed. However I've recently discovered a random folder on both my both my websites that use opencart (1.4.5 on one and 1.4.9.4 on the other).
The folder seemed to be a modified version of my site that pulled in images from lots of other sites. For example from the google cache (as the folder has now been removed from my site):
http://webcache.googleusercontent.com/s ... ogle.co.uk
Anyone got any ideas how this might have happened? Is there a known exploit that I'm not aware of, or is this something new?
As a precaution I've renamed my admin folder just in case.
Thanks,
Gary