Snitz Forums 2000
Snitz Forums 2000
Home | Profile | Register | Active Topics | Members | Search | FAQ
Username:
Password:
Save Password
Forgot your Password?

 All Forums
 Help Groups for Snitz Forums 2000 Users
 Help: General / Classic ASP versions(v3.4.XX)
 possible Security Bug
 New Topic  Topic Locked
 Printer Friendly
Author Previous Topic Topic Next Topic  

renagade
Starting Member

USA
2 Posts

Posted - 18 July 2003 :  15:59:22  Show Profile
Since I am having a hard time fiquring out how to e-mail you on a security issue that one of your customers is having (Enya.com) you might want to investigate yourself. I was looking at purchasing your product, but after this security breach I am wondering why I would even consider...

At this time the Enya.com forum has some person that seems to broken into the forum and the head webmasters are gone for the weekend and the moderators only have locking priviledges while the hacker is in restricted areas such as administration options and going pretty much where he wants...

You may want to contact kerrybrennan007@hotmail.com (Enya.com moderator) and discuss to see what the problem is, I am sure you will here about the problem when the webmaster gets back and I will be looking to see how quickly you resolve this issue and how it is resovlved.

Sorry for the bad new, but thought you would want to know.

HuwR
Forum Admin

United Kingdom
20584 Posts

Posted - 18 July 2003 :  17:05:01  Show Profile  Visit HuwR's Homepage
quote:

Since I am having a hard time fiquring out how to e-mail you on a security issue that one of your customers is having (Enya.com) you might want to investigate yourself. I was looking at purchasing your product, but after this security breach I am wondering why I would even consider...


Why indeed, since the forum is FREE, you do not have to purchase it.

Until someone asks us for help, there is nothing we can do since we are not aware of their problem
Go to Top of Page

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 18 July 2003 :  17:07:16  Show Profile
first of all, you cannot purchase this forum.

Second, I would suggest that the person in charge of that website should check and make sure that they have installed all of the updates listed here:

Bug Fix list for v3.4.03

If this person wants to contact us, then that's fine. But we are not going to go out and contact them.
quote:
I will be looking to see how quickly you resolve this issue and how it is resovlved.
good for you. Until we know that this isn't something that has already been fixed, we can't do anything. The person in charge of that website is going to need to investigate this.
Go to Top of Page

renagade
Starting Member

USA
2 Posts

Posted - 18 July 2003 :  17:27:26  Show Profile
thanks for your replys, very helpful...yes I agree that the person who owns the website should make sure they have all the updates...hopefully they do because this banned member who has a friend that is computer sciences student seems to have shredded the security for the forum and cause the forum members a lot of grief. The member had been "banned" from the site and just decided to come in the back door, I think he even to the administrator ID and gave himself full rights...that is a pretty big security bug!

I understand about you not contacting them, just thought you may be interested since it is being used by a top recording artist under the Warner Label...

I would imagine the the person in charge will be back on Monday...

Thanks everyone for your help here...
Go to Top of Page

davemaxwell
Access 2000 Support Moderator

USA
3020 Posts

Posted - 18 July 2003 :  22:49:56  Show Profile  Visit davemaxwell's Homepage  Send davemaxwell an AOL message  Send davemaxwell an ICQ Message  Send davemaxwell a Yahoo! Message
The person may have exploited a hole that existed in previous versions, or they could be using a security fix that has not been taken care of yet on their site. Once they are sure ALL fixes are in place, I would suggest that all mods/admins change their passwords to ensure that no one else has them. I would also search for other admins they may have missed.

Dave Maxwell
Barbershop Harmony Freak
Go to Top of Page
  Previous Topic Topic Next Topic  
 New Topic  Topic Locked
 Printer Friendly
Jump To:
Snitz Forums 2000 © 2000-2021 Snitz™ Communications Go To Top Of Page
This page was generated in 0.27 seconds. Powered By: Snitz Forums 2000 Version 3.4.07