Urgent wordpress issue:

Associate
Joined
31 May 2005
Posts
2,178
Location
Alfreton,Derbyshire
one of my friends has just informed me that something has been hacked or exploited on my site. I have loads of random URLS appearing just before the footer.

E.g. if you look at the source for the page you will see what I mean

http://photography.mattwaddy.com/category/my-comment/

Anyone have any ideas? Is it a wordpress exploit? What is the best way to sort it out

Many thanks,
 
It looks like you're using Wordpress 2.1.3. Make sure you keep it up to date, it's the easiest way to avoid exploits. Wordpress 3 is out now.

I'd also password protect the wp-admin folder (you can do this in cpanel assuming your server is Linux hosted fairly easily)- this way you can avoid any exploits that bypass users having to login to the admin section.

You also live about 8 miles from me.. hi :p.

edit: from Googling it looks like 2.1.3 has an SQL injection exploit, letting people run whatever they want on your database (this is bad!).
 
Last edited:
Back
Top Bottom