homepage Welcome to WebmasterWorld Guest from
register, free tools, login, search, pro membership, help, library, announcements, recent posts, open posts,
Become a Pro Member
Home / Forums Index / Hardware and OS Related Technologies / Website Technology Issues
Forum Library, Charter, Moderators: phranque

Website Technology Issues Forum

huge security hole at affinity.com's hosting

10+ Year Member

Msg#: 522 posted 10:33 pm on Jul 25, 2001 (gmt 0)

Today affinity.com proved to be one of the worst webhosting companies one can imagine.

Typing my username and password i was able to access the very rute of their server i dont know how, access all files of the sites hosted by affinity.

I called affinity.com and notified them about the error. First, they could not belive me, then then tried to convince me it is not possible and finaly promised to do something about it. well it is already good couple of hours affinity did not take any action.

My advice is do not trust affinity.com to host your site. never.

With Regards
Arman Galstyan
unhappy customer of affinity.com



10+ Year Member

Msg#: 522 posted 10:46 am on Jul 27, 2001 (gmt 0)

I have been a reseller for Affinity since -97. I have allmost all of our own web sites hosted with them.
They are like many other hosts. Some times they stink, some times they are excellent.

It does not come as surprise that a thing like this can happen. Neither is the reaction from the sevice person.

You also have to talk to the right person. Their marketing manager took time and flew to Stockholm to meet us. After that I have contacted him direct whenever I have concerns that customer support does not handle satisfactory.

I have experienced a lot of incidents, like the DNS servers been down, mail servers stop working, anonumous ftp was opened for many of our accounts, etc.
But in all, that is what you get from most hosts over a period of time. To Affinitys defence, I have to say that they have fixed the problems and compensated me afterwards.


5+ Year Member

Msg#: 522 posted 1:02 am on Aug 10, 2001 (gmt 0)

What do you mean "access"?

On a standard unix machine the most lowly user can do a command like "ls /" to receive a list like this:

cdrom floppy initrd mnt proc t usr
bin dev home lib root var
boot etc lost+found sbin tmp

That doesn't mean I can read files I'm not supposed to. E.g., I type ls /root and I get this:

ls: /root: Permission denied

Global Options:
 top home search open messages active posts  

Home / Forums Index / Hardware and OS Related Technologies / Website Technology Issues
rss feed

All trademarks and copyrights held by respective owners. Member comments are owned by the poster.
Home ¦ Free Tools ¦ Terms of Service ¦ Privacy Policy ¦ Report Problem ¦ About ¦ Library ¦ Newsletter
WebmasterWorld is a Developer Shed Community owned by Jim Boykin.
© Webmaster World 1996-2014 all rights reserved