[Moin-user] Attack or no attack
R.Bauer
rb.proj at gmail.com
Mon Sep 19 07:42:12 EDT 2011
Am 18.09.2011 09:10, schrieb Kai Jaeger:
> Today my inbox contained this email:
>
> -------------------
> Dear Wiki user,
>
> You have subscribed to a wiki page "HelpOnEditing" for change
> notification. An attachment has been removed from that page by
> <unknown>. Following detailed information is available:
>
> Attachment name: load_draft.png
> Attachment size: 22974
> Attachment link:
> http://sandbox.aplwiki.com/HelpOnEditing?action=AttachFile&do=get&target=load_draft.png
> Page link: http://sandbox.aplwiki.com/HelpOnEditing
> -------------------
>
> In the meantime an automated procedure had already deleted the sandbox
> wiki and replaced it by a fresh copy, something that is done every
> Sunday.
>
> I am concerned about a couple of things:
>
> 1. How can one "unknown" delete any attachments? The settings make
> sure that one has to log on in order to change something.
check if someone deleted it on the server by a cli scripts.
Or if it is a slightly modified version as copy in data. The first edit
of a underlay page gets it copied to the data scope.
You should have this attachment in the underlay folder similiar to
http://master19.moinmo.in/4ct10n/AttachFile/HelpOnEditing?action=AttachFile
>
> 2. There is no such attachment - it's a system page after all.
>
> What's going on here?
have you looked into servers logs?
Reimar
>
> Kai
>
> ------------------------------------------------------------------------------
> BlackBerry® DevCon Americas, Oct. 18-20, San Francisco, CA
> http://p.sf.net/sfu/rim-devcon-copy2
More information about the Moin-user
mailing list