I started using CMSMS recently to host 3 of my websites. Everything was grand, until last week.
On all of the installs, either I, or more embarrassingly, others have discovered that they have been hacked. Most recently was today, when my main site was masquerading as the Bank of America website:

It seems that the hackers are uploading content to either the uploads dir, or the modules dir - the files uploaded are also secured in such a way as it is impossible to remove them without contacting my hosting provider.
I have secured the modules and uploads directories as follows:
drwxr-xr-x
So, my questions are these:
1. Are these known issues?
2. Is there a solution that someone knows of?
Thanks in advance....
Cheers,
Richie

