Serious Security Issues
One by one my websites are 'knocked off' the web by google because of the security issues in PowerCMS and PowerGallery. I've received the updates for PowerCMS. When do we get the fixes for PowerGallery?
Mail I got from Dreamhost:
During a recent security scan on our servers it has come to our attention one of your DreamHost hosted websites appears to have been compromised. It would appear that malicious individuals have found a way to upload spam pages as well as backdoors to your site(s) at the locations listed below. We have disabled the page(s) in question (via removing their permissions, e.g.. chmod) until you are able to address this matter.
/home/marceleste/sunbirdway.co.za/PowerGallery/Connections/oldtemp.php
(any .htm files are the spam pages and the .php files are suspected backdoors)
We have also done a scan on your site files and found the following directories have insecure permissions. Where we were able to, we have changed the permissions to a more secure 755 -- This change makes it so only the owner of the directory may add files in these locations.
/home/marceleste/sunbirdway.co.za/PowerGallery/images
/home/marceleste/sunbirdway.co.za/PowerGallery/images/1
/home/marceleste/sunbirdway.co.za/PowerGallery/Connections