Knowledgebase: General Q&A
What can I do to make sure my website is protected against hackers ?
Posted by Esvon Support on 28 January 2010 10:19 AM
To make sure your website doesn't have obvious vulnerabilities, we highly recommend you to perform vulnerability audit,
such as offered by McAfee (Step 3 - web application scan),
see URL http://www.mcafeesecure.com/us/technology-scan.jsp

If you will discover any security issues, they should be addressed as soon as possible. Some of them can be existing scripts security holes, some can be caused by customizations made by junior developers with little security expertise.

Also if you're still running Esvon Classifieds 3.x or earlier version, we encourage you to consider upgrading to 4.x

Since the 3.x and earlier versions code was written quite long ago (2002-2005), there is one significant security concern which was discovered in many web applications written in those times, we have addressed it in 2006 since 4.0 release and rewrote the software to make sure it no longer exists.
It is known as XSS vulnerability (cross-site scripting) which is quite dangerous, you can read more about it in Google and try these or similar tools:
http://www.acunetix.com/cross-site-scripting/scanner.htm
http://wstool.sourceforge.net/

Comments (0)
Help Desk Software by Kayako Fusion