HoloCMS me.php redirecting exploit fix
Re: HoloCMS me.php redirecting exploit fix
Thanks a lot. Keep getting those faggots from rage360 doing it to me.
Re: HoloCMS me.php redirecting exploit fix
Yeah. I banned Zorex and ImaDj's IP's and Hostnames via Htaccess.
now we need to fix index.php i got hit again
Re: HoloCMS me.php redirecting exploit fix
Quote:
Originally Posted by
NitroHabbz
Yeah. I banned Zorex and ImaDj's IP's and Hostnames via Htaccess.
now we need to fix index.php i got hit again
Would you mind pming the index.php exploit? I have some spare time and will fix it ;d
Re: HoloCMS me.php redirecting exploit fix
Cecer and me are looking into it already ;)
Re: HoloCMS me.php redirecting exploit fix
Quote:
Originally Posted by
NitroHabbz
Yeah. I banned Zorex and ImaDj's IP's and Hostnames via Htaccess.
now we need to fix index.php i got hit again
Pwned, What are they redirecting it to?
Re: HoloCMS me.php redirecting exploit fix
what's with my problem ? lol.
i already install HoloCMS setup and i delete install.php and upgrade.php
then i go to localhost it redirecting me to localhost/install.php
how to fix it
Re: HoloCMS me.php redirecting exploit fix
Why not use .htaccess to restrict the filename usage and use it to mask real url locations?
Re: HoloCMS me.php redirecting exploit fix
Quote:
Originally Posted by
iJames
Pwned, What are they redirecting it to?
I wouldn't call it 'Pwned' It happened to my hotel, i found out within like 5 secs. And found it within a minuite.
And they redirected to rage360 (The hotel) Because no one wants to join it because it fails so badly that they have to exploit to get players.
Re: HoloCMS me.php redirecting exploit fix
Re: HoloCMS me.php redirecting exploit fix
Nice release, but I think honestly there is more to be added instead of that.
Re: HoloCMS me.php redirecting exploit fix
Nah CJ, it works.
Once we added it the 360rage noobs couldnt redirect me.php so they started on index.php
@ Vista. In me.php search for the top snippet then replace it with the bottom one and save the php file
Re: HoloCMS me.php redirecting exploit fix
Quote:
Originally Posted by
NitroHabbz
Nah CJ, it works.
Once we added it the 360rage noobs couldnt redirect me.php so they started on index.php
@ Vista. In me.php search for the top snippet then replace it with the bottom one and save the php file
I think Vista means how do you redirect the me.php/index.php to his site :P
Re: HoloCMS me.php redirecting exploit fix
yea thanks i hope you find more fixes:)
Re: HoloCMS me.php redirecting exploit fix
Quote:
Originally Posted by
rickymenier
I think Vista means how do you redirect the me.php/index.php to his site :P
it was a javascript exploit. From what me and cecer1 discovered it was to do with the events module on me.php, but this will fix it and you can still use events module
Imadj was doing it on Habbz and then we patched it and released the patch :)