Hi,
We have a number of websites still using the older FCKEditor - over the last week most of these sites seem to have been hacked by the hacker using the FCKEditor upload function to upload a script to the server - and from then they've been able to manipulate the other files on the site.
Is there a quick fix that we could apply to stop this from happening - or if not and easy way for us to remove the upload functionality completely.
Obviously we're trying to convince our customers to upgrade to the new TInyMCE editor but with 55 affected sites we need a quick fix to stop the problem quickly whilst we perform the upgrade to the sites.
I have read the version 2.6.5 or higher of FCKEditor did fix the upload hack problems - do you have an old version of your FCKEditor extension that uses version 2.6.5 so we could just replace the FCKeditor folder on each site (rather than amend all the pages that use the editor) - we would be willing to pay extra for this extension/fix.
Any help you could give would be gratefully received. |
|
|