maemo.org - Talk

maemo.org - Talk (https://talk.maemo.org/index.php)
-   Community (https://talk.maemo.org/forumdisplay.php?f=16)
-   -   Unauthorised editing (https://talk.maemo.org/showthread.php?t=32484)

xmob 2009-10-06 15:26

Unauthorised editing
 
Looks like somebody has managed to edit one of the community pages:

http://maemo.org/community/community...-edit-a-page-/

Can somebody fix it?

zerojay 2009-10-06 15:30

Re: Unauthorised editing
 
Quote:

Originally Posted by xmob (Post 340431)
Looks like somebody has managed to edit one of the community pages:

http://maemo.org/community/community...-edit-a-page-/

Can somebody fix it?

Thanks for showing us... I can't find an easy way to edit the page however. :/

Thesandlord 2009-10-06 15:33

Re: Unauthorised editing
 
Admins, is there a backup or something? This sucks...

qwerty12 2009-10-06 15:46

Re: Unauthorised editing
 
I've reverted it back to Revision 1.7.

(No, I have nothing to do with maemo.org - I'm just a normal member.)

allnameswereout 2009-10-06 15:56

Re: Unauthorised editing
 
Thanks for reporting! Maybe some pages should be only editable by credible authors. For example, you see same on Freedesktop.org. Heck there I could not even fix spam because I had no account... :confused:

Texrat 2009-10-06 16:25

Re: Unauthorised editing
 
gahhh... what did I miss?

TA-t3 2009-10-06 16:44

Re: Unauthorised editing
 
I thought it wasn't possible to edit unless you have an account? In fact that's what the (now restored) page in that link says.. you're supposed to be logged in to even see the edit menu. The history only lists IP addresses for those garbage editions.

qole 2009-10-06 17:06

Re: Unauthorised editing
 
That is very interesting and disturbing... Someone made it into a page of spam links. There's a security hole in Midgard, methinks.

allnameswereout 2009-10-06 17:21

Re: Unauthorised editing
 
Last CVE for Midgard I found is CVE-2008-4630 but this news item from 20090427 lists important fixes. Culprit could also be one of the components Midgard depends on, like Glib2 (e.g. CVE-2009-3289).

zerojay 2009-10-06 17:24

Re: Unauthorised editing
 
Quote:

Originally Posted by TA-t3 (Post 340478)
I thought it wasn't possible to edit unless you have an account? In fact that's what the (now restored) page in that link says.. you're supposed to be logged in to even see the edit menu. The history only lists IP addresses for those garbage editions.

Even logged in, I didn't get ANY edit options whatsoever or else I would have fixed it myself.


All times are GMT. The time now is 16:44.

vBulletin® Version 3.8.8