Index: [Article Count Order] [Thread]

Date:  Tue, 19 Sep 2006 14:47:18 -0400
From:  "Darrell D. Mobley" <dmobley (at mark) uhostme.net>
Subject:  [coba-e:07077] Re: Odd events for September 19, 2006
To:  <coba-e (at mark) bluequartz.org>
Message-Id:  <003201c6dc1c$09219a70$6400a8c0@YOUR4105E587B6>
In-Reply-To:  <20060919102052.M87021 (at mark) scargo.nl>
X-Mail-Count: 07077

Yes, I have a problem, but not one with Joomla. I am using the latest
version of Joomla.  If the issue was with Joomla there would be entries in
the error_log and access_log that showed which exploit was being used.

> -----Original Message-----
> From: Taco Scargo [mailto:taco (at mark) scargo.nl]
> Sent: Tuesday, September 19, 2006 6:21 AM
> To: coba-e (at mark) bluequartz.org
> Subject: [coba-e:07069] Re: Odd events for September 19, 2006
> 
> Hello Blues,
> 
> > After we looked at the site in more detail we found it was a Joomla site
> > running version 1.08 not the latest - I wonder if there is either
> > some bad code creeping in or a vulnerability being exploited.
> 
> Taken from the Joomla.org site/forum:
> 
> http://forum.joomla.org/index.php/topic,89865.0.html
> 
> Joomla! 1.0.11 [ Sunbow ] is now available as of Monday 28th August 2006
> 24:00
> UTC for download here. and is being designated a Critical Security
> Release.
> All existing Joomla! users MUST UPGRADE to this version, due to several
> High
> Level vulnerabilities that affect ALL Previous versions of Joomla!
> 
> 1.0.11 contains the following critical security fixes:
> 
>     * 04 High Level Security Fixes
>     * 04 Medium Level Security Fixes
>     * 18 Low Level security
>     * 25 General bug fixes
> 
> If you are using ANY previous version of Joomla!, you need to upgrade to
> 1.0.11 as soon as possible.
> 
> 
> .... so yes, I think you have a problem...
> 
> Taco