Jump to content

Do I need to assign permission 777 to module folder? Since my prestashop has been hacked.


Recommended Posts

According to the installation manual at http://www.prestashop.com/wiki/Installing_And_Updating_PrestaShop_Software/.
It said that I should CHMOD 777 to some folders including module and its subdirectory.

Few days ago somebody managed to change files on my website and display their own text in the following folders.
blockcurrencies
blockinfos
blocklanguages
blocklink
blockmanufacturer
blockmyaccount
blcoknewproducts
blocknewsletter

These blocks are shown on my homepage which mean that everybody will see hacked message instead of my welcoming message.

My question is, do I need to give full permission of these files to everyone? Can I set 755 or 644 instead? If it is required to be 777, how do I prevent further hacking?

Link to comment
Share on other sites

  • 4 months later...

Please change your topic title to: Question about CHMOD and security.

If you are on a shared server could mean that your neighbour on that server runs an outdated Joomla and thus opens up the whole server.
Please check that first.

Second: CHMOD 755 on dirs and 644 on files should be enough.

Thanks!

Link to comment
Share on other sites

×
×
  • Create New...