toolz Posted November 25, 2010 Share Posted November 25, 2010 Hey Matt, This is pretty urgent. I have confirmed there is an exploit. Your Version 4.2.1 A person started to use a vulnerability last night. He adds credit to client balance. He did it last night, and today aswell. I dont know how, but he keeps doing it. What is this? How can I avoid this? 0 Quote Link to comment Share on other sites More sharing options...
WHMCS CEO Matt Posted November 25, 2010 WHMCS CEO Share Posted November 25, 2010 An exploit is not confirmed until we look into the issue and say so. The most common way malicious users get access to a WHMCS system, either to add credit or do anything else which requires admin access, is by exploiting the server with a shell script or something of that nature to gain database access. Most likely that is what's happened in your situation. Best thing to do is open a ticket and we'll be able to take a look at it for you. Matt 0 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.