republican-creole
site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Share Topic
Posting?
Post a:
Post a:
Links: ·Hijack This logs? ·Panda Free Tools ·Vundo Removal
AuthorAll Replies


TerryMiller
Premium
join:2003-10-23

reply to dualsmp

Re: WebWorm generation 14?

Cert link to the problem »www.us-cert.gov/cas/techalerts/T···56A.html

quote:


phpBB is an open-source bulletin board application. It fails to properly perform an urldecode() on the "highlight" parameter supplied to viewtopic.php. This may allow a remote attacker to execute arbitrary commands on a vulnerable server.

According to reports, this vulnerability is being actively exploited by the Santy.A worm. The worm appears to propogate by searching for the keyword "viewtopic.php" in order to find vulnerable sites.



--
My family site


paulroberts898

@pol.co.uk

Santy Worm,

I'm getting this on virtual servers where I'm not running PHP or phpbb can it infect other accounts?

Sunday, 27-May 14:41:35 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics