It looks like something has been posted in the thread about Jan's start/stop/restart script thread - https://cumulus.hosiene.co.uk/viewtopic.php?f=27&t=13767 - which Apache's security module is getting upset about, and it is returning a 418 error. I have looked at the error log, and I can see the relevant security error, but it's not clear exactly what the problem is. I can see the phrases "Backdoor access", "severity critical" and "malicious software/trojan" however, and that doesn't sound nice.
I don't think anyone has done this deliberately; perhaps they have a virus on their PC, or perhaps, given the topic of the thread, the security module has just been confused by some shell script which someone has legitimately included in their post.
I have asked Dreamhost if they will explain the message and what I need to do to fix it.
Welcome to the Cumulus Support forum.
Latest Cumulus MX V4 release 4.4.2 (build 4085) - 12 March 2025
Latest Cumulus MX V3 release 3.28.6 (build 3283) - 21 March 2024
Legacy Cumulus 1 release 1.9.4 (build 1099) - 28 November 2014
(a patch is available for 1.9.4 build 1099 that extends the date range of drop-down menus to 2030)
Download the Software (Cumulus MX / Cumulus 1 and other related items) from the Wiki
If you are posting a new Topic about an error or if you need help PLEASE read this first viewtopic.php?p=164080#p164080
Latest Cumulus MX V4 release 4.4.2 (build 4085) - 12 March 2025
Latest Cumulus MX V3 release 3.28.6 (build 3283) - 21 March 2024
Legacy Cumulus 1 release 1.9.4 (build 1099) - 28 November 2014
(a patch is available for 1.9.4 build 1099 that extends the date range of drop-down menus to 2030)
Download the Software (Cumulus MX / Cumulus 1 and other related items) from the Wiki
If you are posting a new Topic about an error or if you need help PLEASE read this first viewtopic.php?p=164080#p164080
Security issue in start/stop/restart script thread
Moderator: mcrossley
-
jank
- Posts: 239
- Joined: Sat 13 Jun 2015 5:57 pm
- Weather Station: FineOffset WS3080
- Operating System: Debian Buster - Raspbian - Raspb
- Location: Germany - nearby Kassel
Re: Security issue in start/stop/restart script thread
Hello Steve
Yesterday evening I posted my last answer with the option CODE (in your editor). Everything else was plain text
There were 6 lines in this Code but I don't think, they are a security risk.
It was this code snipped
I don't think this is dangerous
In my last post, I did not send any new script and, my post was not the last post at this day.
I recognized the Problem on the Webserver this morning, when I tried to read the answer from jpsc
Jan
Yesterday evening I posted my last answer with the option CODE (in your editor). Everything else was plain text
There were 6 lines in this Code but I don't think, they are a security risk.
It was this code snipped
Code: Select all
## Assuming that CumulusMX is installed in /home/pi/CumulusMX - if not exist CumulusMX.exe, search HD for the correct installation Path
if [ ! -f "/home/pi/CumulusMX/CumulusMX.exe" ];then
INSTPATH=$(find / -type d -name "$IPATH" -print 2>/dev/null |head -n1) > /dev/null
else
INSTPATH="/home/pi/CumulusMX/"
fi
I recognized the Problem on the Webserver this morning, when I tried to read the answer from jpsc
Jan
- jpsc
- Posts: 183
- Joined: Tue 23 Aug 2011 6:06 pm
- Weather Station: Davis Vantage Vue, belfryboy USB
- Operating System: Raspbian Bullseye
- Location: Wye valley, Herefordshire, UK
- Contact:
Re: Security issue in start/stop/restart script thread
I think it was my post, it did contain some scripts and SSH screen snippets.
- steve
- Cumulus Author
- Posts: 26672
- Joined: Mon 02 Jun 2008 6:49 pm
- Weather Station: None
- Operating System: None
- Location: Vienne, France
- Contact:
Re: Security issue in start/stop/restart script thread
Were there any attachments, or was it all pasted into the message itself? I can delete the contents of your post via the database.
Steve
- jpsc
- Posts: 183
- Joined: Tue 23 Aug 2011 6:06 pm
- Weather Station: Davis Vantage Vue, belfryboy USB
- Operating System: Raspbian Bullseye
- Location: Wye valley, Herefordshire, UK
- Contact:
Re: Security issue in start/stop/restart script thread
No attachments, only snippets in Code brackets.
- steve
- Cumulus Author
- Posts: 26672
- Joined: Mon 02 Jun 2008 6:49 pm
- Weather Station: None
- Operating System: None
- Location: Vienne, France
- Contact:
Re: Security issue in start/stop/restart script thread
I tried posting the contents of your post in a new thread and got the same problem. I don't understand why the security module thinks it's a problem, it must be being over cautious.
Steve
- steve
- Cumulus Author
- Posts: 26672
- Joined: Mon 02 Jun 2008 6:49 pm
- Weather Station: None
- Operating System: None
- Location: Vienne, France
- Contact:
Re: Security issue in start/stop/restart script thread
I've deleted the contents of your post and reposted it as an image, although the formatting is a bit poor as a result.
Steve
