Oops - got owned
- Thursday, June 05 2003 @ 10:50 am EDT
- Contributed by: Chalkhillian
- Views: 7,779
Stupid stupid me. I was "owned" for about 12 hours and I'm still assessing the damage.
Welcome to Geeklog, Anonymous Wednesday, January 01 2025 @ 01:43 pm EST
Security issues have been found with Geeklog 1.3.7sr1 (and older versions), one of which actually opens up the possibility to gain Admin control over a Geeklog site. We are therefore releasing Geeklog 1.3.7sr2 and strongly recommend that you upgrade to that version as soon as possible.
There is an upgrade archive (from 1.3.7sr1) available, as well as a full 1.3.7sr2 release. See the documentation for details.
This is the first major security issue with Geeklog that has been found in a long time and that actually enables an attacker to gain Admin control of a site. It was reported to us a few days ago and we are not aware of any sites being hacked as a result of this, since it does require a bit of knowledge to exploit. However, since we do take security seriously, we would like to point out again that it is important that you install this update ASAP.
Most engaging in the last 2 months
If you need help in setting up or using Geeklog, please see the documentation, the FAQ, the Wiki, try our search page or browse through the Support Forum. Chances are someone else already had the same problem.
More resources are listed on the support page.
If you still can't find an answer, feel free to post in the forum or ask on Gitter in the Geeklog room.