Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> RavenNuke(tm) v2.5x
Author Message
derek765
Regular
Regular



Joined: Sep 27, 2012
Posts: 99
Location: Okinawa, Japan

PostPosted: Sat Dec 08, 2012 4:03 am Reply with quote

I have a quite good amount of friends in the Hacking community and asked a buddy to do a vulnerability scan of my website and this is the results he gave me.
I check the directories of which was showing broken links but most of those directories aren't even there, but have no idea why these locations would even be showing?

HTML Form without CSRF Protection

Code:


/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)



Broken Links

Code:


/images/news/account-new_user.html
/images/news/account.html
/images/news/archive.html
/images/news/download-file-4.html
/images/news/downloads.html
/images/news/feedback.html
/images/news/forums.html
/images/news/fsearch-unanswered.html
/images/news/html_newsletter.html
/images/news/includes/boxover/boxover.js
/images/news/includes/jquery/colorbox-settings.js
/images/news/includes/jquery/css/colorbox.css
/images/news/includes/jquery/css/nukeNAV.css
/images/news/includes/jquery/jquery.colorbox-min.js
/images/news/includes/jquery/jquery.hoverIntent.minified.js
/images/news/includes/jquery/jquery.js
/images/news/includes/jquery/nukeNAV.js
/images/news/includes/jquery/superfish.js
/images/news/includes/jquery/supersubs.js
/images/news/includes/nukeSEO/nukePIE.css
/images/news/includes/rn.js
/images/news/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/images/news/index.php (2778c9f04bfc8c0c28291250d575c8de)
/images/news/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/images/news/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/images/news/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/images/news/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/images/news/index.php (dea72a137074388b89fed955415ffa95)
/images/news/legal-lgl_contact.html
/images/news/legal-notice.html
/images/news/legal-privacy.html
/images/news/legal-terms.html
/images/news/links.html
/images/news/metauthors.html
/images/news/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/images/news/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/images/news/modules/News/css/socialicons.css
/images/news/modules/Tags/css/tags.css
/images/news/recommend.html
/images/news/search.html
/images/news/stats.html
/images/news/survey-results-1.html
/images/news/surveys.html
/images/news/surveys.html (4eaa6b1ad7b7f941ed6bb9103c54371c)
/images/news/surveys.html (9a5bbb83b100f5a8e10c8a956b5ed71a)
/images/news/surveys.html (c17045d457152a55976b7e8620bd4693)
/images/news/themes/fisubice/style/nukeNAV.css
/images/news/themes/fisubice/style/style.css
/images/news/themes/ravennuke.css
/images/news/top.html
/images/news/topics.html
/images/NewsImages/account-new_user.html
/images/NewsImages/account.html
/images/NewsImages/archive.html
/images/NewsImages/download-file-4.html
/images/NewsImages/downloads.html
/images/NewsImages/feedback.html
/images/NewsImages/forums.html
/images/NewsImages/fsearch-unanswered.html
/images/NewsImages/html_newsletter.html
/images/NewsImages/includes/boxover/boxover.js
/images/NewsImages/includes/jquery/colorbox-settings.js
/images/NewsImages/includes/jquery/css/colorbox.css
/images/NewsImages/includes/jquery/css/nukeNAV.css
/images/NewsImages/includes/jquery/jquery.colorbox-min.js
/images/NewsImages/includes/jquery/jquery.hoverIntent.minified.js
/images/NewsImages/includes/jquery/jquery.js
/images/NewsImages/includes/jquery/nukeNAV.js
/images/NewsImages/includes/jquery/superfish.js
/images/NewsImages/includes/jquery/supersubs.js
/images/NewsImages/includes/nukeSEO/nukePIE.css
/images/NewsImages/includes/rn.js
/images/NewsImages/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/images/NewsImages/index.php (2778c9f04bfc8c0c28291250d575c8de)
/images/NewsImages/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/images/NewsImages/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/images/NewsImages/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/images/NewsImages/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/images/NewsImages/index.php (dea72a137074388b89fed955415ffa95)
/images/NewsImages/legal-lgl_contact.html
/images/NewsImages/legal-notice.html
/images/NewsImages/legal-privacy.html
/images/NewsImages/legal-terms.html
/images/NewsImages/links.html
/images/NewsImages/metauthors.html
/images/NewsImages/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/images/NewsImages/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/images/NewsImages/modules/News/css/socialicons.css
/images/NewsImages/modules/Tags/css/tags.css
/images/NewsImages/recommend.html
/images/NewsImages/search.html
/images/NewsImages/stats.html
/images/NewsImages/survey-results-1.html
/images/NewsImages/surveys.html
/images/NewsImages/surveys.html (04e121e8360a4b2c2f862c3919147db7)
/images/NewsImages/surveys.html (1936baa8cb66e21f3447e619ba0c893a)
/images/NewsImages/surveys.html (2785935eac30c4c0c9fac54b9ca2e410)
/images/NewsImages/themes/fisubice/style/nukeNAV.css
/images/NewsImages/themes/fisubice/style/style.css
/images/NewsImages/themes/ravennuke.css
/images/NewsImages/top.html
/images/NewsImages/topics.html
/includes/jquery/account-new_user.html
/includes/jquery/account.html
/includes/jquery/archive.html
/includes/jquery/css/account-new_user.html
/includes/jquery/css/account.html
/includes/jquery/css/archive.html
/includes/jquery/css/download-file-4.html
/includes/jquery/css/downloads.html
/includes/jquery/css/feedback.html
/includes/jquery/css/forums.html
/includes/jquery/css/fsearch-unanswered.html
/includes/jquery/css/html_newsletter.html
/includes/jquery/css/images/account-new_user.html
/includes/jquery/css/images/account.html
/includes/jquery/css/images/archive.html
/includes/jquery/css/images/download-file-4.html
/includes/jquery/css/images/downloads.html
/includes/jquery/css/images/feedback.html
/includes/jquery/css/images/forums.html
/includes/jquery/css/images/fsearch-unanswered.html
/includes/jquery/css/images/html_newsletter.html
/includes/jquery/css/images/includes/boxover/boxover.js
/includes/jquery/css/images/includes/jquery/colorbox-settings.js
/includes/jquery/css/images/includes/jquery/css/colorbox.css
/includes/jquery/css/images/includes/jquery/css/nukeNAV.css
/includes/jquery/css/images/includes/jquery/jquery.colorbox-min.js
/includes/jquery/css/images/includes/jquery/jquery.hoverIntent.minified.js
/includes/jquery/css/images/includes/jquery/jquery.js
/includes/jquery/css/images/includes/jquery/nukeNAV.js
/includes/jquery/css/images/includes/jquery/superfish.js
/includes/jquery/css/images/includes/jquery/supersubs.js
/includes/jquery/css/images/includes/nukeSEO/nukePIE.css
/includes/jquery/css/images/includes/rn.js
/includes/jquery/css/images/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/includes/jquery/css/images/index.php (2778c9f04bfc8c0c28291250d575c8de)
/includes/jquery/css/images/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/includes/jquery/css/images/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/includes/jquery/css/images/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/includes/jquery/css/images/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/includes/jquery/css/images/index.php (dea72a137074388b89fed955415ffa95)
/includes/jquery/css/images/legal-lgl_contact.html
/includes/jquery/css/images/legal-notice.html
/includes/jquery/css/images/legal-privacy.html
/includes/jquery/css/images/legal-terms.html
/includes/jquery/css/images/links.html
/includes/jquery/css/images/metauthors.html
/includes/jquery/css/images/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/includes/jquery/css/images/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/includes/jquery/css/images/modules/News/css/socialicons.css
/includes/jquery/css/images/modules/Tags/css/tags.css
/includes/jquery/css/images/recommend.html
/includes/jquery/css/images/search.html
/includes/jquery/css/images/stats.html
/includes/jquery/css/images/survey-results-1.html
/includes/jquery/css/images/surveys.html
/includes/jquery/css/images/surveys.html (214e52614519f9284016b09c43a970c0)
/includes/jquery/css/images/surveys.html (b51aa567817451edffc7298f35f6b5c0)
/includes/jquery/css/images/surveys.html (c3652d476251e3fbe0f670ee176d4928)
/includes/jquery/css/images/themes/fisubice/style/nukeNAV.css
/includes/jquery/css/images/themes/fisubice/style/style.css
/includes/jquery/css/images/themes/ravennuke.css
/includes/jquery/css/images/top.html
/includes/jquery/css/images/topics.html
/includes/jquery/css/includes/boxover/boxover.js
/includes/jquery/css/includes/jquery/colorbox-settings.js
/includes/jquery/css/includes/jquery/css/colorbox.css
/includes/jquery/css/includes/jquery/css/nukeNAV.css
/includes/jquery/css/includes/jquery/jquery.colorbox-min.js
/includes/jquery/css/includes/jquery/jquery.hoverIntent.minified.js
/includes/jquery/css/includes/jquery/jquery.js
/includes/jquery/css/includes/jquery/nukeNAV.js
/includes/jquery/css/includes/jquery/superfish.js
/includes/jquery/css/includes/jquery/supersubs.js
/includes/jquery/css/includes/nukeSEO/nukePIE.css
/includes/jquery/css/includes/rn.js
/includes/jquery/css/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/includes/jquery/css/index.php (2778c9f04bfc8c0c28291250d575c8de)
/includes/jquery/css/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/includes/jquery/css/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/includes/jquery/css/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/includes/jquery/css/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/includes/jquery/css/index.php (dea72a137074388b89fed955415ffa95)
/includes/jquery/css/legal-lgl_contact.html
/includes/jquery/css/legal-notice.html
/includes/jquery/css/legal-privacy.html
/includes/jquery/css/legal-terms.html
/includes/jquery/css/links.html
/includes/jquery/css/metauthors.html
/includes/jquery/css/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/includes/jquery/css/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/includes/jquery/css/modules/News/css/socialicons.css
/includes/jquery/css/modules/Tags/css/tags.css
/includes/jquery/css/recommend.html
/includes/jquery/css/search.html
/includes/jquery/css/stats.html
/includes/jquery/css/survey-results-1.html
/includes/jquery/css/surveys.html
/includes/jquery/css/surveys.html (04e121e8360a4b2c2f862c3919147db7)
/includes/jquery/css/surveys.html (1936baa8cb66e21f3447e619ba0c893a)
/includes/jquery/css/surveys.html (2785935eac30c4c0c9fac54b9ca2e410)
/includes/jquery/css/themes/fisubice/style/nukeNAV.css
/includes/jquery/css/themes/fisubice/style/style.css
/includes/jquery/css/themes/ravennuke.css
/includes/jquery/css/top.html
/includes/jquery/css/topics.html
/includes/jquery/download-file-4.html
/includes/jquery/downloads.html
/includes/jquery/feedback.html
/includes/jquery/forums.html
/includes/jquery/fsearch-unanswered.html
/includes/jquery/html_newsletter.html
/includes/jquery/images/account-new_user.html
/includes/jquery/images/account.html
/includes/jquery/images/archive.html
/includes/jquery/images/download-file-4.html
/includes/jquery/images/downloads.html
/includes/jquery/images/feedback.html
/includes/jquery/images/forums.html
/includes/jquery/images/fsearch-unanswered.html
/includes/jquery/images/html_newsletter.html
/includes/jquery/images/includes/boxover/boxover.js
/includes/jquery/images/includes/jquery/colorbox-settings.js
/includes/jquery/images/includes/jquery/css/colorbox.css
/includes/jquery/images/includes/jquery/css/nukeNAV.css
/includes/jquery/images/includes/jquery/jquery.colorbox-min.js
/includes/jquery/images/includes/jquery/jquery.hoverIntent.minified.js
/includes/jquery/images/includes/jquery/jquery.js
/includes/jquery/images/includes/jquery/nukeNAV.js
/includes/jquery/images/includes/jquery/superfish.js
/includes/jquery/images/includes/jquery/supersubs.js
/includes/jquery/images/includes/nukeSEO/nukePIE.css
/includes/jquery/images/includes/rn.js
/includes/jquery/images/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/includes/jquery/images/index.php (2778c9f04bfc8c0c28291250d575c8de)
/includes/jquery/images/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/includes/jquery/images/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/includes/jquery/images/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/includes/jquery/images/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/includes/jquery/images/index.php (dea72a137074388b89fed955415ffa95)
/includes/jquery/images/legal-lgl_contact.html
/includes/jquery/images/legal-notice.html
/includes/jquery/images/legal-privacy.html
/includes/jquery/images/legal-terms.html
/includes/jquery/images/links.html
/includes/jquery/images/metauthors.html
/includes/jquery/images/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/includes/jquery/images/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/includes/jquery/images/modules/News/css/socialicons.css
/includes/jquery/images/modules/Tags/css/tags.css
/includes/jquery/images/recommend.html
/includes/jquery/images/search.html
/includes/jquery/images/stats.html
/includes/jquery/images/survey-results-1.html
/includes/jquery/images/surveys.html
/includes/jquery/images/surveys.html (257dd12df172140839f2ad6a930663cd)
/includes/jquery/images/surveys.html (958862ca1505833910f04a178abe493c)
/includes/jquery/images/surveys.html (e9863120d5b9fde555b06ba138699e7c)
/includes/jquery/images/themes/fisubice/style/nukeNAV.css
/includes/jquery/images/themes/fisubice/style/style.css
/includes/jquery/images/themes/ravennuke.css
/includes/jquery/images/top.html
/includes/jquery/images/topics.html
/includes/jquery/includes/boxover/boxover.js
/includes/jquery/includes/jquery/colorbox-settings.js
/includes/jquery/includes/jquery/css/colorbox.css
/includes/jquery/includes/jquery/css/nukeNAV.css
/includes/jquery/includes/jquery/jquery.colorbox-min.js
/includes/jquery/includes/jquery/jquery.hoverIntent.minified.js
/includes/jquery/includes/jquery/jquery.js
/includes/jquery/includes/jquery/nukeNAV.js
/includes/jquery/includes/jquery/superfish.js
/includes/jquery/includes/jquery/supersubs.js
/includes/jquery/includes/nukeSEO/nukePIE.css
/includes/jquery/includes/rn.js
/includes/jquery/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/includes/jquery/index.php (2778c9f04bfc8c0c28291250d575c8de)
/includes/jquery/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/includes/jquery/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/includes/jquery/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/includes/jquery/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/includes/jquery/index.php (dea72a137074388b89fed955415ffa95)
/includes/jquery/legal-lgl_contact.html
/includes/jquery/legal-notice.html
/includes/jquery/legal-privacy.html
/includes/jquery/legal-terms.html
/includes/jquery/links.html
/includes/jquery/metauthors.html
/includes/jquery/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/includes/jquery/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/includes/jquery/modules/News/css/socialicons.css
/includes/jquery/modules/Tags/css/tags.css
/includes/jquery/recommend.html
/includes/jquery/search.html
/includes/jquery/stats.html
/includes/jquery/survey-results-1.html
/includes/jquery/surveys.html
/includes/jquery/surveys.html (7e85e565b60678ad75361bb6dca3417f)
/includes/jquery/surveys.html (b8f9d92b6d605076b0364d9a29558145)
/includes/jquery/surveys.html (fdf70e6d6241f7a009b962611d825bd7)
/includes/jquery/themes/fisubice/style/nukeNAV.css
/includes/jquery/themes/fisubice/style/style.css
/includes/jquery/themes/ravennuke.css
/includes/jquery/top.html
/includes/jquery/topics.html
/modules/News/css/account-new_user.html
/modules/News/css/account.html
/modules/News/css/archive.html
/modules/News/css/download-file-4.html
/modules/News/css/downloads.html
/modules/News/css/feedback.html
/modules/News/css/forums.html
/modules/News/css/fsearch-unanswered.html
/modules/News/css/html_newsletter.html
/modules/News/css/images/account-new_user.html
/modules/News/css/images/account.html
/modules/News/css/images/archive.html
/modules/News/css/images/download-file-4.html
/modules/News/css/images/downloads.html
/modules/News/css/images/feedback.html
/modules/News/css/images/forums.html
/modules/News/css/images/fsearch-unanswered.html
/modules/News/css/images/html_newsletter.html
/modules/News/css/images/includes/boxover/boxover.js
/modules/News/css/images/includes/jquery/colorbox-settings.js
/modules/News/css/images/includes/jquery/css/colorbox.css
/modules/News/css/images/includes/jquery/css/nukeNAV.css
/modules/News/css/images/includes/jquery/jquery.colorbox-min.js
/modules/News/css/images/includes/jquery/jquery.hoverIntent.minified.js
/modules/News/css/images/includes/jquery/jquery.js
/modules/News/css/images/includes/jquery/nukeNAV.js
/modules/News/css/images/includes/jquery/superfish.js
/modules/News/css/images/includes/jquery/supersubs.js
/modules/News/css/images/includes/nukeSEO/nukePIE.css
/modules/News/css/images/includes/rn.js
/modules/News/css/images/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/modules/News/css/images/index.php (2778c9f04bfc8c0c28291250d575c8de)
/modules/News/css/images/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/modules/News/css/images/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/modules/News/css/images/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/modules/News/css/images/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/modules/News/css/images/index.php (dea72a137074388b89fed955415ffa95)
/modules/News/css/images/legal-lgl_contact.html
/modules/News/css/images/legal-notice.html
/modules/News/css/images/legal-privacy.html
/modules/News/css/images/legal-terms.html
/modules/News/css/images/links.html
/modules/News/css/images/metauthors.html
/modules/News/css/images/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/modules/News/css/images/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/modules/News/css/images/modules/News/css/socialicons.css
/modules/News/css/images/modules/Tags/css/tags.css
/modules/News/css/images/recommend.html
/modules/News/css/images/search.html
/modules/News/css/images/stats.html
/modules/News/css/images/survey-results-1.html
/modules/News/css/images/surveys.html
/modules/News/css/images/surveys.html (04e121e8360a4b2c2f862c3919147db7)
/modules/News/css/images/surveys.html (1936baa8cb66e21f3447e619ba0c893a)
/modules/News/css/images/surveys.html (2785935eac30c4c0c9fac54b9ca2e410)
/modules/News/css/images/themes/fisubice/style/nukeNAV.css
/modules/News/css/images/themes/fisubice/style/style.css
/modules/News/css/images/themes/ravennuke.css
/modules/News/css/images/top.html
/modules/News/css/images/topics.html
/modules/News/css/includes/boxover/boxover.js
/modules/News/css/includes/jquery/colorbox-settings.js
/modules/News/css/includes/jquery/css/colorbox.css
/modules/News/css/includes/jquery/css/nukeNAV.css
/modules/News/css/includes/jquery/jquery.colorbox-min.js
/modules/News/css/includes/jquery/jquery.hoverIntent.minified.js
/modules/News/css/includes/jquery/jquery.js
/modules/News/css/includes/jquery/nukeNAV.js
/modules/News/css/includes/jquery/superfish.js
/modules/News/css/includes/jquery/supersubs.js
/modules/News/css/includes/nukeSEO/nukePIE.css
/modules/News/css/includes/rn.js
/modules/News/css/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/modules/News/css/index.php (2778c9f04bfc8c0c28291250d575c8de)
/modules/News/css/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/modules/News/css/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/modules/News/css/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/modules/News/css/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/modules/News/css/index.php (dea72a137074388b89fed955415ffa95)
/modules/News/css/legal-lgl_contact.html
/modules/News/css/legal-notice.html
/modules/News/css/legal-privacy.html
/modules/News/css/legal-terms.html
/modules/News/css/links.html
/modules/News/css/metauthors.html
/modules/News/css/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/modules/News/css/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/modules/News/css/modules/News/css/socialicons.css
/modules/News/css/modules/Tags/css/tags.css
/modules/News/css/recommend.html
/modules/News/css/search.html
/modules/News/css/stats.html
/modules/News/css/survey-results-1.html
/modules/News/css/surveys.html
/modules/News/css/surveys.html (04e121e8360a4b2c2f862c3919147db7)
/modules/News/css/surveys.html (1936baa8cb66e21f3447e619ba0c893a)
/modules/News/css/surveys.html (2785935eac30c4c0c9fac54b9ca2e410)
/modules/News/css/themes/fisubice/style/nukeNAV.css
/modules/News/css/themes/fisubice/style/style.css
/modules/News/css/themes/ravennuke.css
/modules/News/css/top.html
/modules/News/css/topics.html
/modules/News/js/account-new_user.html
/modules/News/js/account.html
/modules/News/js/archive.html
/modules/News/js/download-file-4.html
/modules/News/js/downloads.html
/modules/News/js/feedback.html
/modules/News/js/forums.html
/modules/News/js/fsearch-unanswered.html
/modules/News/js/html_newsletter.html
/modules/News/js/includes/boxover/boxover.js
/modules/News/js/includes/jquery/colorbox-settings.js
/modules/News/js/includes/jquery/css/colorbox.css
/modules/News/js/includes/jquery/css/nukeNAV.css
/modules/News/js/includes/jquery/jquery.colorbox-min.js
/modules/News/js/includes/jquery/jquery.hoverIntent.minified.js
/modules/News/js/includes/jquery/jquery.js
/modules/News/js/includes/jquery/nukeNAV.js
/modules/News/js/includes/jquery/superfish.js
/modules/News/js/includes/jquery/supersubs.js
/modules/News/js/includes/nukeSEO/nukePIE.css
/modules/News/js/includes/rn.js
/modules/News/js/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/modules/News/js/index.php (2778c9f04bfc8c0c28291250d575c8de)
/modules/News/js/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/modules/News/js/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/modules/News/js/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/modules/News/js/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/modules/News/js/index.php (dea72a137074388b89fed955415ffa95)
/modules/News/js/legal-lgl_contact.html
/modules/News/js/legal-notice.html
/modules/News/js/legal-privacy.html
/modules/News/js/legal-terms.html
/modules/News/js/links.html
/modules/News/js/metauthors.html
/modules/News/js/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/modules/News/js/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/modules/News/js/modules/News/css/socialicons.css
/modules/News/js/modules/Tags/css/tags.css
/modules/News/js/recommend.html
/modules/News/js/search.html
/modules/News/js/stats.html
/modules/News/js/survey-results-1.html
/modules/News/js/surveys.html
/modules/News/js/surveys.html (4eaa6b1ad7b7f941ed6bb9103c54371c)
/modules/News/js/surveys.html (9a5bbb83b100f5a8e10c8a956b5ed71a)
/modules/News/js/surveys.html (c17045d457152a55976b7e8620bd4693)
/modules/News/js/themes/fisubice/style/nukeNAV.css
/modules/News/js/themes/fisubice/style/style.css
/modules/News/js/themes/ravennuke.css
/modules/News/js/top.html
/modules/News/js/topics.html
/modules/Tags/css/account-new_user.html
/modules/Tags/css/account.html
/modules/Tags/css/archive.html
/modules/Tags/css/download-file-4.html
/modules/Tags/css/downloads.html
/modules/Tags/css/feedback.html
/modules/Tags/css/forums.html
/modules/Tags/css/fsearch-unanswered.html
/modules/Tags/css/html_newsletter.html
/modules/Tags/css/includes/boxover/boxover.js
/modules/Tags/css/includes/jquery/colorbox-settings.js
/modules/Tags/css/includes/jquery/css/colorbox.css
/modules/Tags/css/includes/jquery/css/nukeNAV.css
/modules/Tags/css/includes/jquery/jquery.colorbox-min.js
/modules/Tags/css/includes/jquery/jquery.hoverIntent.minified.js
/modules/Tags/css/includes/jquery/jquery.js
/modules/Tags/css/includes/jquery/nukeNAV.js
/modules/Tags/css/includes/jquery/superfish.js
/modules/Tags/css/includes/jquery/supersubs.js
/modules/Tags/css/includes/nukeSEO/nukePIE.css
/modules/Tags/css/includes/rn.js
/modules/Tags/css/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/modules/Tags/css/index.php (2778c9f04bfc8c0c28291250d575c8de)
/modules/Tags/css/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/modules/Tags/css/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/modules/Tags/css/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/modules/Tags/css/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/modules/Tags/css/index.php (dea72a137074388b89fed955415ffa95)
/modules/Tags/css/legal-lgl_contact.html
/modules/Tags/css/legal-notice.html
/modules/Tags/css/legal-privacy.html
/modules/Tags/css/legal-terms.html
/modules/Tags/css/links.html
/modules/Tags/css/metauthors.html
/modules/Tags/css/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/modules/Tags/css/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/modules/Tags/css/modules/News/css/socialicons.css
/modules/Tags/css/modules/Tags/css/tags.css
/modules/Tags/css/recommend.html
/modules/Tags/css/search.html
/modules/Tags/css/stats.html
/modules/Tags/css/survey-results-1.html
/modules/Tags/css/surveys.html
/modules/Tags/css/surveys.html (04e121e8360a4b2c2f862c3919147db7)
/modules/Tags/css/surveys.html (1936baa8cb66e21f3447e619ba0c893a)
/modules/Tags/css/surveys.html (2785935eac30c4c0c9fac54b9ca2e410)
/modules/Tags/css/themes/fisubice/style/nukeNAV.css
/modules/Tags/css/themes/fisubice/style/style.css
/modules/Tags/css/themes/ravennuke.css
/modules/Tags/css/top.html
/modules/Tags/css/topics.html
/themes/fisubice/forums/images/lang_english/account-new_user.html
/themes/fisubice/forums/images/lang_english/account.html
/themes/fisubice/forums/images/lang_english/archive.html
/themes/fisubice/forums/images/lang_english/download-file-4.html
/themes/fisubice/forums/images/lang_english/downloads.html
/themes/fisubice/forums/images/lang_english/feedback.html
/themes/fisubice/forums/images/lang_english/forums.html
/themes/fisubice/forums/images/lang_english/fsearch-unanswered.html
/themes/fisubice/forums/images/lang_english/html_newsletter.html
/themes/fisubice/forums/images/lang_english/includes/boxover/boxover.js
/themes/fisubice/forums/images/lang_english/includes/jquery/colorbox-settings.js
/themes/fisubice/forums/images/lang_english/includes/jquery/css/colorbox.css
/themes/fisubice/forums/images/lang_english/includes/jquery/css/nukeNAV.css
/themes/fisubice/forums/images/lang_english/includes/jquery/jquery.colorbox-min.js
/themes/fisubice/forums/images/lang_english/includes/jquery/jquery.hoverIntent.minified.js
/themes/fisubice/forums/images/lang_english/includes/jquery/jquery.js
/themes/fisubice/forums/images/lang_english/includes/jquery/nukeNAV.js
/themes/fisubice/forums/images/lang_english/includes/jquery/superfish.js
/themes/fisubice/forums/images/lang_english/includes/jquery/supersubs.js
/themes/fisubice/forums/images/lang_english/includes/nukeSEO/nukePIE.css
/themes/fisubice/forums/images/lang_english/includes/rn.js
/themes/fisubice/forums/images/lang_english/index.php (1d50a9d88239533138f1c089ce5bfbcc)
/themes/fisubice/forums/images/lang_english/index.php (2778c9f04bfc8c0c28291250d575c8de)
/themes/fisubice/forums/images/lang_english/index.php (3f853b23cbe87dc838104e4fd994f0bc)
/themes/fisubice/forums/images/lang_english/index.php (61426fd84e47ef38895a7f5bd579fd5d)
/themes/fisubice/forums/images/lang_english/index.php (6dfacaa99cdb0c910b23ec835d45b7e2)
/themes/fisubice/forums/images/lang_english/index.php (8f4d44e1fec8cec88040f5fc5b86afda)
/themes/fisubice/forums/images/lang_english/index.php (dea72a137074388b89fed955415ffa95)
/themes/fisubice/forums/images/lang_english/legal-lgl_contact.html
/themes/fisubice/forums/images/lang_english/legal-notice.html
/themes/fisubice/forums/images/lang_english/legal-privacy.html
/themes/fisubice/forums/images/lang_english/legal-terms.html
/themes/fisubice/forums/images/lang_english/links.html
/themes/fisubice/forums/images/lang_english/metauthors.html
/themes/fisubice/forums/images/lang_english/modules.php (5ebd27866d2d37eeff0e261ec19fd492)
/themes/fisubice/forums/images/lang_english/modules.php (a5db5cff91ba708dd3d0e5f65797d92c)
/themes/fisubice/forums/images/lang_english/modules/News/css/socialicons.css
/themes/fisubice/forums/images/lang_english/modules/Tags/css/tags.css
/themes/fisubice/forums/images/lang_english/recommend.html
/themes/fisubice/forums/images/lang_english/search.html
/themes/fisubice/forums/images/lang_english/stats.html
/themes/fisubice/forums/images/lang_english/survey-results-1.html
/themes/fisubice/forums/images/lang_english/surveys.html
/themes/fisubice/forums/images/lang_english/surveys.html (30405b858ccedb2dc1b9c579118b40e5)
/themes/fisubice/forums/images/lang_english/surveys.html (68c72d7ebf6abc682cc12bb4096e48ef)
/themes/fisubice/forums/images/lang_english/surveys.html (c662a2166f0730b4727b61aedf00dc83)
/themes/fisubice/forums/images/lang_english/themes/fisubice/style/nukeNAV.css
/themes/fisubice/forums/images/lang_english/themes/fisubice/style/style.css
/themes/fisubice/forums/images/lang_english/themes/ravennuke.css
/themes/fisubice/forums/images/lang_english/top.html
/themes/fisubice/forums/images/lang_english/topics.html
 
View user's profile Send private message Visit poster's website
spasticdonkey
RavenNuke(tm) Development Team



Joined: Dec 02, 2006
Posts: 1693
Location: Texas, USA

PostPosted: Sat Dec 08, 2012 11:08 am Reply with quote

It is possible to generate "broken links" such as your list by accessing non-public areas. Looks like the images/news/ directory was accessed (yoursite.com/images/news/) and it then proceeds to attempt to load all those components using the standard path from the wrong directory; resulting in the broken file paths.

Not really a security issue, but certainly something that should be addressed. I believe it may only occur when the Error Documents module is active with the appropriate declarations in htaccess. You can add a blank index.html file to the images/news/ directory which would address that issue.

Going down the list I would bet these directories have the same issue, and also need a blank index.html placed within. In some cases doing so can break something, so do so with care. I think these are all safe to do, but keep your eyes peeled... As I don't have time to try it out atm.

/includes/jquery/
/includes/jquery/css/
/includes/jquery/css/images/
/includes/jquery/images/

/modules/News/css/
/modules/News/css/images/
/modules/News/js/
/modules/Tags/css/
/themes/fisubice/forums/images/lang_english/

this is not a core directory, but maybe one you added?
/images/NewsImages/

As for the CSRF issue, not sure what to say there.. Fix the other "issues" and see what you find after. We would need to know when/where some anomaly is occurring.
 
View user's profile Send private message Visit poster's website
montego
Site Admin



Joined: Aug 29, 2004
Posts: 9457
Location: Arizona

PostPosted: Sat Dec 08, 2012 11:23 am Reply with quote

Unfortunately not enough information on the CSRF/form issue to even take it further - really need to know where the issue is. If you have any further details that you could share via Private Message, we'll definitely take a closer look.

Thank you!

_________________
Where Do YOU Stand?
HTML Newsletter::ShortLinks::Mailer::Downloads and more... 
View user's profile Send private message Visit poster's website
derek765







PostPosted: Sat Dec 08, 2012 10:41 pm Reply with quote

I'll get back to you on this issue and will be sure to send you a Private Message.
I asked him to found out more on that CSRF form issue.
 
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> RavenNuke(tm) v2.5x

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©