Welcome to the Cumulus Support forum.

Latest Cumulus MX V4 release 4.4.2 (build 4085) - 12 March 2025

Latest Cumulus MX V3 release 3.28.6 (build 3283) - 21 March 2024

Legacy Cumulus 1 release 1.9.4 (build 1099) - 28 November 2014
(a patch is available for 1.9.4 build 1099 that extends the date range of drop-down menus to 2030)

Download the Software (Cumulus MX / Cumulus 1 and other related items) from the Wiki

If you are posting a new Topic about an error or if you need help PLEASE read this first viewtopic.php?p=164080#p164080

Security issue in start/stop/restart script thread

Topics about the Beta trials up to Build 3043, the last build by Cumulus's founder Steve Loft. It was by this time way out of Beta but Steve wanted to keep it that way until he made a decision on his and Cumulus's future.

Moderator: mcrossley

Locked
User avatar
steve
Cumulus Author
Posts: 26672
Joined: Mon 02 Jun 2008 6:49 pm
Weather Station: None
Operating System: None
Location: Vienne, France
Contact:

Security issue in start/stop/restart script thread

Post by steve »

It looks like something has been posted in the thread about Jan's start/stop/restart script thread - https://cumulus.hosiene.co.uk/viewtopic.php?f=27&t=13767 - which Apache's security module is getting upset about, and it is returning a 418 error. I have looked at the error log, and I can see the relevant security error, but it's not clear exactly what the problem is. I can see the phrases "Backdoor access", "severity critical" and "malicious software/trojan" however, and that doesn't sound nice.

I don't think anyone has done this deliberately; perhaps they have a virus on their PC, or perhaps, given the topic of the thread, the security module has just been confused by some shell script which someone has legitimately included in their post.

I have asked Dreamhost if they will explain the message and what I need to do to fix it.
Steve
jank
Posts: 239
Joined: Sat 13 Jun 2015 5:57 pm
Weather Station: FineOffset WS3080
Operating System: Debian Buster - Raspbian - Raspb
Location: Germany - nearby Kassel

Re: Security issue in start/stop/restart script thread

Post by jank »

Hello Steve
Yesterday evening I posted my last answer with the option CODE (in your editor). Everything else was plain text
There were 6 lines in this Code but I don't think, they are a security risk.
It was this code snipped

Code: Select all

## Assuming that CumulusMX is installed in /home/pi/CumulusMX - if not exist CumulusMX.exe, search HD for the correct installation Path
 if [ ! -f "/home/pi/CumulusMX/CumulusMX.exe" ];then
      INSTPATH=$(find / -type d -name "$IPATH" -print 2>/dev/null |head -n1) > /dev/null
    else
      INSTPATH="/home/pi/CumulusMX/"
 fi
I don't think this is dangerous :-) In my last post, I did not send any new script and, my post was not the last post at this day.
I recognized the Problem on the Webserver this morning, when I tried to read the answer from jpsc
Jan
Do want a Managing Dashboard for CumulusMX on RaspberryPi? cumulusmx.sh
viewtopic.php?f=40&t=17907
Image
User avatar
jpsc
Posts: 183
Joined: Tue 23 Aug 2011 6:06 pm
Weather Station: Davis Vantage Vue, belfryboy USB
Operating System: Raspbian Bullseye
Location: Wye valley, Herefordshire, UK
Contact:

Re: Security issue in start/stop/restart script thread

Post by jpsc »

I think it was my post, it did contain some scripts and SSH screen snippets.
John Cooper

Cumulus MX v4 on RPi3 with SSD

http://weather.mountpleasanthouse.uk

Image
User avatar
steve
Cumulus Author
Posts: 26672
Joined: Mon 02 Jun 2008 6:49 pm
Weather Station: None
Operating System: None
Location: Vienne, France
Contact:

Re: Security issue in start/stop/restart script thread

Post by steve »

Were there any attachments, or was it all pasted into the message itself? I can delete the contents of your post via the database.
Steve
User avatar
jpsc
Posts: 183
Joined: Tue 23 Aug 2011 6:06 pm
Weather Station: Davis Vantage Vue, belfryboy USB
Operating System: Raspbian Bullseye
Location: Wye valley, Herefordshire, UK
Contact:

Re: Security issue in start/stop/restart script thread

Post by jpsc »

No attachments, only snippets in Code brackets.
John Cooper

Cumulus MX v4 on RPi3 with SSD

http://weather.mountpleasanthouse.uk

Image
User avatar
steve
Cumulus Author
Posts: 26672
Joined: Mon 02 Jun 2008 6:49 pm
Weather Station: None
Operating System: None
Location: Vienne, France
Contact:

Re: Security issue in start/stop/restart script thread

Post by steve »

I tried posting the contents of your post in a new thread and got the same problem. I don't understand why the security module thinks it's a problem, it must be being over cautious.
Steve
User avatar
steve
Cumulus Author
Posts: 26672
Joined: Mon 02 Jun 2008 6:49 pm
Weather Station: None
Operating System: None
Location: Vienne, France
Contact:

Re: Security issue in start/stop/restart script thread

Post by steve »

I've deleted the contents of your post and reposted it as an image, although the formatting is a bit poor as a result.
Steve
Locked