I don’t remember adding these, but some interesting stuff has happened in my weblogin chunks and snippets.
In the registration form this hidden variable appears not once, but twice:
<input type="hidden" name="phpMyAdmin" value="f3961184ba27f76dd4bb6bac17cb5356" />
and in one of my chunks, a link:
<li><a href="[~84~]?bus_id=[+bus_id+]&phpMyAdmin=f3961184ba27f76dd4bb6bac17cb5356">View Business Details</a>
Obviously, this is very concerning - either:
- my mind is really fading and I put them there myself ages ago, for some unknown reason (very unlikely)
- my web host added them somehow?????!!??!! (very unlikely)
- using phpmyadmin has added it somehow? ( seems unlikely)
- my site has been hacked? ( seems most likely!)
How could this strange key get in there? And what could someone do with the key?
Has this ever happened to anyone else?
I’m using MODx Evo 1.0.3 (recently upgraded from 0.9.6)
Weblogin 1.3.1
PHP 5.2.11 (safe mode was recently just turned off)
mysql 5.0.86
Apache 2.0