[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <C1946074-5797-11D9-96A9-000D93C0F38C@teknovis.com>
Date: Sun, 26 Dec 2004 15:42:08 -0800
From: Andrew Farmer <andfarm@...novis.com>
To: Herman Sheremetyev <herman@...bpage.com>
Cc: bugtraq@...urityfocus.com, full-disclosure@...ts.netsys.com
Subject: Re: new phpBB worm affects 2.0.11
On 24 Dec 2004, at 14:06, Herman Sheremetyev wrote:
> My patched phpBB 2.0.11 running on FreeBSD 4.10 was exploited by a new
> variation of the worm this morning. I'm attaching the 2 perl scripts
> it installs, one is an irc bot the other the worm itself.
The worm code attached uses the same old 2.0.10 highlight
vulnerability. You probably hadn't patched all your phpBB installs
properly.
Download attachment "PGP.sig" of type "application/pgp-signature" (187 bytes)
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Powered by blists - more mailing lists