Quote:
|
Originally Posted by chatserv
Sadly PHP-Nuke 6.0 has 3 very serious vulnerabilities, the News ratings, the Webmail's mailattach.php file and the referers code in index.php, hence the ease with which they attacked you.
|
Right after my site was hacked (i think because of the News rating hole, i had a message on a higher layer) I applied the fix for News.
How the other 2 (Webmail and Referers) can be fixed?
I think i deleted mailattach.php after i was noticed by analyze.php security script from NukeCops.
Any other advice for Nuke6.0?