How did I get hacked? Help!

One of the websites I host got hacked. I'm kind of amused this time because I've never been hacked before, and the hackers were rather friendly in that they didn't destroy anything. However, I'd prefer this doesn't happen again (obviously). The hackers were able to install a php program called nsTView v.2.0 on the domain and gained control of the domain through that. I'm pretty sure they were able to do this by token of the fact that the folder into which they installed nsTView is chmod777. I need you to: 1) reconstruct for me in clear English the process they likely followed to find my vulnerabilities and exploit them. 2) Tell me what process they used to upload the nsTView. THEN, I need you to modify my simple filebrowser program that currently requires the hacked folder to be chmod777. So, this is a) Tracking down my vulnerabilities; b) fixing them and the php application I currently use that has opened these exploits.

## Platform

PHP, Linux Box

