Support Forum

3rd Party injection in forum scripts

CH charles121
charles121
Member

good day mr. Pappa and Yellow Swordfish

 

today I found a possible injection or link to injection in one of the files – see below:

you need to pay for this cryptyou need to pay for this cryptyou need to pay for this crypt
Warning: Cannot modify header information – headers already sent by (output started at /xxxxx/xxxxxx/public_html/justmail.za.net/index.php:1) in /xxxxx/xxxxxx/public_html/justmail.za.net/wp-content/plugins/simple-press/sp-startup/site/sp-ahah-handler.php on line 21

 

(the above comes up on the wp forum admin page)

 

could you recommend any action to stop unwanted 3rd party injections or interventions?embarassed

 

kind regards

charles

1 Answer

New Answer

YS Yellow Swordfish
Yellow Swordfish
Member

I think the first thing you perhaps need to do is look at the index.php file in the wp-admin folder to ensure it is correct.

I would also suggest that issues like this are not dealt with publicly – it is unwise to have pasted in the path from your server in the post for example. I will remove it for you. But perhaps we could move the discussion to a PM instead in case we need to talk about other sensitive items