CS-Cart upgraded to 2.2.2 got hacked

Some time yesterday, the 6th of September my account at my web host got hacked.

I had just spend the day upgrading from 2.1.0 to the 2.2.2, I also did change the admin.php to a new one as requested for security.



According to my host, mine was among others who were exploited by vulnerabilities on the website.



Has this happened to others? Will there be a fix?

[quote name='DTL' timestamp='1315402887' post='121151']

Some time yesterday, the 6th of September my account at my web host got hacked.

I had just spend the day upgrading from 2.1.0 to the 2.2.2, I also did change the admin.php to a new one as requested for security.



According to my host, mine was among others who were exploited by vulnerabilities on the website.



Has this happened to others? Will there be a fix?

[/quote]



Maybe whole shared hosting got hacked? I would suggest moving to VPS.



My server also got hacked recently, two cs-cart sites, 2.1.4 and 2.1.2. Yet I did not figured how it happened, files added to 777 chmod dirs.

Yes, the whole shared hosting got hacked.



What spec. on the VPS do you recommend for a small site with small volumes?

Where was the hacked store hosted? In what country is this host company located? Please let us know.

Site hacked leave a bad impact on credibility. There is nothing worst that a customer walk to you trusting you know what are you doing and bamb!! the site is hacked.



Happened to me 1 time, and is a business killer.

[quote name='colortone' timestamp='1315422219' post='121184']

Where was the hacked store hosted? In what country is this host company located? Please let us know.

Site hacked leave a bad impact on credibility. There is nothing worst that a customer walk to you trusting you know what are you doing and bamb!! the site is hacked.



Happened to me 1 time, and is a business killer.

[/quote]



It is hosted in the UK, Linux server (shared hosting). I've got very little info but apparently there were multiple accounts affected.

[quote]I've got very little info but apparently there were multiple accounts affected.[/quote]



That pretty well sums up that you might want to strongly consider looking for a better managed hosting company.

Would recommend also Cloud VPS hosting? Is it really safe?