PDA

View Full Version : Someone hacking Photopost?


meissen
August 20th, 2007, 06:28 PM
I've had 5 DBerror messages sent to me, all of them are amazingly from the same IP address -- an unregistered user, IP is 64.1.215.163.

All of the DB errors are the same (just different photos):
Database error in vBulletin 3.6.6:

Invalid SQL:

SELECT *
FROM bbcode;

MySQL Error : Lost connection to MySQL server during query
Error Number : 2013
Date : Friday, August 17th 2007 @ 12:08:50 PM
Script : http://www.mifbody.com/gallery/showphoto.php?photo=319&size=big&date=1184548169
Referrer :
IP Address : 64.1.215.163
Username : Unregistered
Classname : vb_database

I don't even see how they're able to do this? I have not had this error by anyone else, just this one IP address. I've since IP Banned them since it seems they weren't up to any good.

Anyone else having this issue?

Michael P
August 20th, 2007, 08:03 PM
bbcode is a vBulletin database and this report is a vB error report; not PhotoPost.

meissen
August 23rd, 2007, 05:41 AM
Right, I understand that, but it's only occurring in my photopost gallery. I have photopost integrated with vbulletin. http://www.mifbody.com/gallery/ is my PhotoPost gallery. I get random unregistered users who somehow get the page to try and query * from BBCode (vbulletin table) which then times out and results in a database error.. This doesn't happen on a regular basis, before it was 1 IP address, I blocked that IP and now this morning I just had a different IP address, 69.147.79.125, make it do this database error as well.

Chuck S
August 23rd, 2007, 09:27 AM
My suggestion is to try and disable and vb hacks stuff like that which may cause errors in your vb and see if this helps you.

As Michael notes this entire error is a vbulletin one and since our applications have their own mysql routines and errors posted this one is clearly from vb