Advanced search  

News:

CPG Release 1.6.26
Correct PHP8.2 issues with user and language managers.
Additional fixes for PHP 8.2
Correct PHP8 error with SMF 2.0 bridge.
Correct IPTC supplimental category parsing.
Download and info HERE

Pages: [1]   Go Down

Author Topic: they are fingerprinting my installation through DOCS directory  (Read 3953 times)

0 Members and 1 Guest are viewing this topic.

netrunnercl

  • Coppermine newbie
  • Offline Offline
  • Posts: 1
they are fingerprinting my installation through DOCS directory
« on: November 17, 2010, 06:12:03 pm »

Hi.

I was checkin my access logs when i realized some abnormal pattern:

fotos.MYSITE.info/docs/nl/dev_subversion.htm
fotos.MYSITE.info/docs/fr/php-content.htm
fotos.MYSITE.info/docs/es/install.htm
fotos.MYSITE.info/docs/nl/admin_menu.htm
fotos.MYSITE.info/docs/nl/requirements.htm
fotos.MYSITE.info/docs/nl/uploading_http.htm
fotos.MYSITE.info/docs/en/testing.htm
fotos.MYSITE.info/docs/nl/toc.htm
fotos.MYSITE.info/docs/en/theme_copyright.htm
fotos.MYSITE.info/docs/de/upload_troubleshooting.htm
fotos.MYSITE.info/docs/fr/exif.htm
fotos.MYSITE.info/docs/es/start.htm
fotos.MYSITE.info/docs/fr/credits.htm
fotos.MYSITE.info/docs/es/upgrading.htm
fotos.MYSITE.info/docs/de/categories.htm
fotos.MYSITE.info/docs/nl/theme.htm
fotos.MYSITE.info/docs/fr/dev_database.htm
fotos.MYSITE.info/docs/fr/requirements.htm
fotos.MYSITE.info/docs/nl/php-content.htm
fotos.MYSITE.info/docs/es/install.htm
fotos.MYSITE.info/docs/de/index.htm
fotos.MYSITE.info/docs/nl/comments.htm
fotos.MYSITE.info/docs/de/upload_troubleshooting.htm
fotos.MYSITE.info/docs/de/auto-installers.htm


If i go to this pages... the title includes de version as you can see: Coppermine Photo Gallery v1.5.6: Documentatie en Handleiding

Now i guess hackers are fingerprinting coppermine installation through /DOCS/ directory.
I have read the info about deleting part of this directory, but after this, i prefer to delete as much as i can from it.

So, my question is, what can i delete and what i cant from this directory and mantain good de installation?.

It is posible that in next versions you remove this extra info?

thanx!
Logged

Αndré

  • Administrator
  • Coppermine addict
  • *****
  • Country: de
  • Offline Offline
  • Gender: Male
  • Posts: 15764
Re: they are fingerprinting my installation through DOCS directory
« Reply #1 on: November 17, 2010, 09:32:03 pm »

You should upgrade instead of hiding the version number. It's important for us when supporting to know which version the user has running. The version number is displayed at other places, too.
Logged
Pages: [1]   Go Up
 

Page created in 0.019 seconds with 19 queries.