Home
Home

Directory
Directory

Articles
Internet News
Security News
Ecommerce News
Domain News

Site Tools
Site Speed Test
Keyword Research
Resolve Hostname
DNS Tools
Register Domains
Affiliate Programs
Open Source

Shopping Carts
Cart Reviews
SSL Certificates

Enter your email address to subscribe to our updates:

Delivered by FeedBurner


Venue Charts
Channel Traffic Rankings
OAI Stock Quotes and Charts
eBay's Worst Feedback

Forum
Forum Home
TulipTools News
Advertising
Blogging
Computer Hardware
Domain Names
Ecommerce
Financing
Int'l Trading
Graphics and HTML
Internet Access
Legal Issues
Internet Business
Auction Sites
Classified Ad Sites
Fixed Price Venues
Operating Systems
Programming
Search Engines
Internet Security
Software
Web Hosting
Webmaster Issues
Reviews
Announcements
Off Topic Discussion

Web Hosting
TulipHosting

Domain Names
TulipDomains

Web Stats
TulipStats

Forum Rules
Forum Rules
Privacy Policy

Site Map
Forum Sitemap
Sitemap Topics




Directory| Forums| Internet News|Cart Reviews| DNS Tools| Keyword Research| Site Speed Test| Security| | Domain Marketplace| Domain Blog
TulipTools Internet Business Owners and Online Sellers Community
  • Home
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register
TulipTools Internet Business Owners and Online Sellers Community › Online Auction Industry, B2B Trading Sites, Classified Ad Sites, Fixed Price Venues, and Malls › Online Auction Industry Discussion › Auction Sites › Other Auction Sites v
« Previous 1 2 3 4 5 … 7 Next »

New PHPProBid hack found... Your site may be affected, says site owner

  
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
New PHPProBid hack found... Your site may be affected, says site owner
11-21-2008, 09:15 AM,
Post: #1
xwpopper Offline
Big Member
*****
Posts: 440
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Aug 2007
Reputation: 0
New PHPProBid hack found... Your site may be affected, says site owner
http://www.powersellersunite.com/about23627.html
What ever will all those sellers do with the big holiday rush of 100 visitors to the site?
Icon_thumleft
Keep those listing contests going at all the Probid sites, and keep that forum warm and fuzzy!
"Listen up Mother****er. Try that bulls*** here and I will hand you and your head in a basket"
- Ray Romeo's alter ego Andrew Pittino responding when I signed up a new account on Wagglepop to verify the non-existence of a way to opt out of his sharing my information with third parties.
Like Post Reply
[+]
11-21-2008, 07:41 PM,
Post: #2
BellisimaJ. Offline
Rabble-Rouser
*********
Posts: 6,609
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Apr 2006
Reputation: 0
Re: New PHPProBid hack found... Your site may be affected, says site owner
Why is it that the psu threads are always either annoying or amusing?

:popcorneaters:
Like Post Reply
[+]
11-22-2008, 09:00 AM, (This post was last modified: 11-22-2008, 09:02 AM by mandy.)
Post: #3
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
Re: New PHPProBid hack found... Your site may be affected, says site owner
GB auctions Wrote:I took the easy option here, and used the issue to fully upgrade the script to the latest version which came out in September. That has many new features and all updated security fixes.

PHPProBid has yet to release a security fix for the security hole that was discovered on September 19th.  The version he upgraded to has an easily hacked security hole (see exploit code below)

Quote:PHP Pro Bid Multiple SQL Injection Vulnerabilities
Secunia Advisory: SA31981
Release Date:  2008-09-23
Critical:
Moderately critical
Impact: Manipulation of data
Exposure of sensitive information
Where: From remote
Solution Status: Unpatched

Software: PHP Pro Bid 6.x

http://secunia.com/Advisories/31981/
http://www.networksecurityarchive.org/ht...00210.html

Exploit example published September 19,2008:
Code:
http://example.com/phpprobidlocation/categories.php?start=0&limit=20&parent_id=669&keywords_cat_search=&buyout_price=&reserve_price=&quantity=&enable_swap=&order_field=(select%201)x&order_type=%20
Like Post Reply
[+]
« Next Oldest | Next Newest »




Possibly Related Threads…
Thread Author Replies Views Last Post
  Site Owner Thinks His Criminal Record Bolsters New Auction Site's Credibility sneakymagenta 4 5,116 04-02-2010, 12:00 AM
Last Post: amy
  PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging xwpopper 10 8,715 09-05-2009, 06:36 AM
Last Post: Xamer
  The Moronic Utterings Of A UK Rinky Dink Site Owner sneakymagenta 45 21,804 03-30-2009, 10:54 PM
Last Post: sneakymagenta
  We created this site to help you get found. usiff 0 2,202 01-05-2009, 05:54 AM
Last Post: usiff
  Auction Site Owner TrustedAuction Spams the Blujay Boards and Insults Women O~Romeo~U~Suck 78 37,864 04-13-2008, 06:00 AM
Last Post: amy

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:


Users browsing this thread: 1 Guest(s)
  • Contact Us
  • TulipTools Internet Business Owners and Online Sellers Community
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
  • Help
Current time: 05-12-2026, 06:33 AM Powered By MyBB, © 2002-2026 MyBB Group. Theme created by Justin S.
powered by Apache

powered by Linuxpowered by CentOS

Copyright 2000-2013 TulipTools.com. All rights reserved.