It was brought to my attention that there was a vulnerability on my running site that enables unwanted individuals to get into directories like it was public. The site was already taken offline for me to check but I really don't get the issue surrounding it nor any idea where to start.

Any suggestion guys?

Comments

mylocaltrades’s picture

Have you ensured that Drupal core is up to date?

Offering Drupal website services to the UK - www.my-local-trades.co.uk

justtakeitac’s picture

I was just planning to check before the incident happen, so not yet. Although, the question is if can I still salvage the site if I upgrade the core.