Our friends over at Social CMS Buzz and given us a heads up on a new security issue. The module “Send Announcement v0.2″ was used on a Pligg install to send out spam emails to all the members.
There are no details as to how this happened, but it is for certain that this module was the culprit.
Social CMS, like I, are advising you to disable and remove this module until more details can be made available.
SocialCMSBuzz gets banned from the pligg forums for revealing PYcURL Security Vurnability
RSS feed for comments on this post. TrackBack URL
July 29th, 2008 at 1:06 am
Thanks for pointing this out. Security is no small issue.
China Business Watchs last blog post..Not All Blogs Are Created Equal
July 30th, 2008 at 7:54 am
Never ends when it comes to security and spammers.
admins last blog post..Gold prices since 1988