<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
	<channel>
		<title><![CDATA[Latest posts for the topic "Need FAST fix for HACK"]]></title>
		<link>https://proxy2.de/forum/posts/list/3.php</link>
		<description><![CDATA[Latest messages posted in the topic "Need FAST fix for HACK"]]></description>
		<generator>JForum - http://www.jforum.net</generator>
			<item>
				<title>Need FAST fix for HACK</title>
				<description><![CDATA[ Dear All,<br /> <br /> Today the guestbook (version 2.2) on a very popular site in NL ha sbeen kind of hacked.<br /> <br /> Someone was able to remove the top of the page (the logo part) and include a racial text...!<br /> <br /> Several people have been on the phone!<br /> <br /> We have removed it but want to make sure this NEVER happens again...<br /> <br /> Thanks! (perhaps a chmod on a file?)<br /> <br /> I'll wait here for your answer...<br /> <br /> Thanks]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8036.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8036.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 13:15:52]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Check the logfiles in your server and see how they got in.<br /> Maybe the server has a leak.<br /> You could also upgrade to version 2.3.1]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8037.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8037.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 13:29:11]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Thanks for the fast reply!<br /> <br /> We're currently checking the server logs. The file has probably been uploaded together with a comment. Not a server leak...a script leak. <img src="https://proxy2.de/forum//images/smilies/3b63d1616c5dfcf29f8a7a031aaa7cad.gif" /><br /> <br /> I can't find the release notes of the latest version. What garuantees does this new version has?<br /> <br /> Thanks!]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8038.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8038.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 13:31:41]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ It gives some new features, fixes some bugs.<br /> I don't know wich bugs, but it might be better then the version you now use.<br /> version 2.3.0 had a bug in the admin section and 2.3.1 fixed that.<br /> <br /> But it sounds if version 2.2 has a SQL Injection Exploit bug, this is common to bad coding in php scripts.<br /> <br /> Do you have a link to your guestbook?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8039.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8039.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 13:54:04]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Yep,<br /> <br /> try this : <a class="snap_shots" href="http://gastenboek.leidapieters.nl/" target="_blank" rel="nofollow">http://gastenboek.leidapieters.nl/</a><br /> <br /> Thanks!]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8040.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8040.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 14:00:33]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I found out that Advanced Guestbook 2.2 appears vulnerable to SQL Injection granting the attacker administrator access. The attack is very simple and consists of inputting a special password string leaving the username entry blank: <br /> <br /> So I suggest you upgrade to the latest version.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8041.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8041.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 14:07:09]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Thanks! I'll let them know....]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8045.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8045.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 15:24:22]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title>Same hack problem</title>
				<description><![CDATA[ We also had the same hack problem at the same day...<br /> <br /> It was in the guestbook of our dutch Atlantikwall Museum website. Also a racial text in the header and the language was put to Polish together with some other strange adjustments...<br /> <br /> Is it possible this was a hack only against the advanced guestbook? And how did the hacker now were to find the guestbooks?<br /> <br /> My biggest problem is now after I fixed al the changes (and everything was working like it should) I logged out of the admin.php and the whole guestbook doesn't seem to work anymore....<br /> <br /> Are there more people with the same problem? and just to be shure, can I save al the messages that were submitted when it worked?<br /> <br /> If you want to see that it doens't work go here <a class="snap_shots" href="http://www.atlantikwall-museum.nl/gastenboek/admin.php" target="_blank" rel="nofollow">http://www.atlantikwall-museum.nl/gastenboek/admin.php</a> or /index2.php or /addentry.php]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8068.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8068.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 15:08:08]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ By the way... The files I named are still intact when i open them with ftp acces... The source is almost blank when opened in Explorer.<br /> <br /> I really hope someone can help, the guestbook is a important page on our website.<br /> <br /> thank you!<br /> <br /> Peter]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8069.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8069.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 15:10:56]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Uhm i now see we also use the 2.2 version... How do i upgrade to the new version? Overwrite? And will all the old submitted messages kept safe?<br /> <br /> As you can see I have a lot of questions <img src="https://proxy2.de/forum//images/smilies/3b63d1616c5dfcf29f8a7a031aaa7cad.gif" /><br /> <br /> I just don't understand why someone would hack the guestbook of a respectfull museum... <br /> <br /> Hoping for a reply and thanks!<br /> <br /> Peter]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8070.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8070.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 15:16:18]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hi Peter,<br /> <br /> All your mesagges will be spared only the layout of the guestbook will be back to default.<br /> <br /> You will have to use PHPMYADMIN or something similar. Phpmyadmin is what most web server hosts use for their clients to access the database. <br /> <br /> Replace all files (with the original guestbook 2.3.1) and update your database with the SQL file.<br /> <br /> [code]# MySQL dump 8.16<br /> #<br /> # Host&#58; localhost    Database&#58; gb23<br /> #--------------------------------------------------------<br /> # Server version      3.23.42<br /> <br /> #<br /> # Table structure for table 'book_pics'<br /> #<br /> <br /> CREATE TABLE book_pics &#40;<br />   msg_id int&#40;11&#41; NOT NULL default '0',<br />   book_id int&#40;11&#41; NOT NULL default '0',<br />   p_filename varchar&#40;100&#41; NOT NULL default '',<br />   p_size int&#40;11&#41; unsigned NOT NULL default '0',<br />   width int&#40;11&#41; unsigned NOT NULL default '0',<br />   height int&#40;11&#41; unsigned NOT NULL default '0',<br />   KEY msg_id &#40;msg_id&#41;,<br />   KEY book_id &#40;book_id&#41;<br /> &#41; TYPE=MyISAM;<br /> <br /> ALTER TABLE `book_config` ADD `thumbnail` SMALLINT&#40;1&#41; NOT NULL, ADD `thumb_min_fsize` INT&#40;10&#41; NOT NULL;  [/code]]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8074.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8074.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 17:37:53]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hey Jam'n,<br /> <br /> Thanks for the quick reaction!<br /> <br /> Still one problem. I get the following error when trying to updat the SQL<br /> <br /> [list]Error<br /> <br /> SQL-query :  <br /> <br /> CREATE DATABASE /*!32312 IF NOT EXISTS*/gb22 <br /> <br /> MySQL said: <br /> <br /> <br /> #1044 - Access denied for user: 'atlantik@localhost' to database 'gb22' <br /> <br /> [/list]<br /> <br /> I've never done this before so maybe i am doing something wrong... I accessed the server using phpmyadmin, chose the database for the guestbook, clicked on SQL, located the SQL file (guestbook.sql) and clicked GO... I also tried to put in the code manually but that came out with the same error..<br /> <br /> I hope you can come up with the sulution!<br /> <br /> Thanks, <br /> <br /> Peter]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8076.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8076.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 19:28:03]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ One more thing...<br /> <br /> Ive also tried the code you placed for me, and the update code, but the book still didn't work]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8077.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8077.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 19:38:52]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Are you sure your authorized to make such changes&gt;<br /> <br /> [b]Access denied for user:[/b] 'atlantik@localhost' to database 'gb22']]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8081.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8081.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 20:54:17]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ The error was my own fault, i updated the SQL with the wrong file... I used the whole guestbook.sql instead of the update version.<br /> I am also not shure of how far my permissions go.. Im just a simple webmaster <img src="https://proxy2.de/forum//images/smilies/3b63d1616c5dfcf29f8a7a031aaa7cad.gif" /><br /> <br /> When i used the update version later, it was succesfull.<br /> <br /> But unfortunately the guestbook still isn't working. Ill try again tommorow otherwise i think will reinstall the whole program.<br /> <br /> It's saternight so time for something else...<br /> <br /> Nog ff in het Nederlands, bedankt voor het helpen dusver! Mocht je me nog gaan redden met het gastenboek, biertje?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8085.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8085.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 21:52:55]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ My guest book has been hacked the same way.  It was hacked on the 22nd and the 23rd.<br /> <br /> I'm looking into upgrading, now.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8086.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8086.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:02:02]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hi Peter,<br /> <br /> I looked at your guestbook and I see they have damaged some of the files.<br /> <br /> <br /> <br /> Ik stuur je een mailtje waar je me rechtstreeks kunt bereiken via de site.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8087.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8087.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:40:42]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I just upgraded and it finally worked.  However, I am getting a problem.  After I type in my username and password, I go to the main admin screen.  If I click on something, it takes me to the Admin login panel, again. <br /> <br /> Do you know what is wrong?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8088.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8088.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:42:34]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I must start to learn to loggin  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" />]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8089.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8089.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:45:35]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ [quote="Jam'n"]I must start to learn to loggin  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" />[/quote]<br /> <br /> Huh?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8091.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8091.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:48:33]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I often reply to a message without logging in and post as a guest.<br /> Normally I always post as Jam’n or Jam_n, but sometimes I just forget to login,]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8092.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8092.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:55:17]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ You bet, Jamn!<br /> <br /> I found my fix here: <a class="snap_shots" href="http://proxy2.de/forum/viewtopic.php?t=1981&amp;start=17" target="_blank" rel="nofollow">http://proxy2.de/forum/viewtopic.php?t=1981&amp;start=17</a><br /> <br /> Barney]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8093.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8093.php</link>
				<pubDate><![CDATA[Sat, 24 Apr 2004 22:59:17]]> GMT</pubDate>
				<author><![CDATA[ Anonymous]]></author>
			</item>
			<item>
				<title>file: admin/config.inc.php.bp GB_PG[&amp;quot;base_url&amp;quot;] =</title>
				<description><![CDATA[ file: admin/config.inc.php.bp<br /> <br /> $GB_PG["base_url"] = ""; /* e.g <a class="snap_shots"  target="_blank" rel="nofollow">htpp://www.yourdomain.com/guestbook/</a> */<br /> instead of                        /* e.g <a class="snap_shots"  target="_blank" rel="nofollow">htpp://www.yourdomain.com/guestbook/img</a> */]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8159.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8159.php</link>
				<pubDate><![CDATA[Thu, 29 Apr 2004 12:35:49]]> GMT</pubDate>
				<author><![CDATA[ zahid]]></author>
			</item>
			<item>
				<title>Restore old posts</title>
				<description><![CDATA[ [quote="Jam'n"]All your mesagges will be spared only the layout of the guestbook will be back to default. [/quote]<br /> <br /> It would be great, If we can restore old records.<br /> <br /> By the way, is there any change in the tables ? <br /> <br /> if one of you mark the changes .]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3035/8160.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3035/8160.php</link>
				<pubDate><![CDATA[Thu, 29 Apr 2004 12:46:17]]> GMT</pubDate>
				<author><![CDATA[ zahid]]></author>
			</item>
	</channel>
</rss>