Got any info on PHP Nuke exploits?
PHP-Nuke Script Insertion Vulnerabilities • http://archives.neohapsis.com/archives/secunia/2004-q1/0661.html • http://www.securityfocus.com/archive/1/241586 • http://www.securiteam.com/unixfocus/6U0082K8KS.html • http://www.nukecops.com/postt38013.html • http://www.nukecops.com/postt38685.html Note that the webmail module has been removed from the PHP-Nuke distribution due to its poor security since version 7.2 (march 2004). Using a more recent distribution of PHP-Nuke is of no help if the webmail module has been retained from a previous release, or has been downloaded later from some other site as an “add-on”. Also note that, according to user reports, it appears to be insufficient to disable the webmail feature to prevent the scammers from using it. You must delete the webmail module, causing removal of all the related files from the server.