Re: [Full-Disclosure] new phpBB worm affects 2.0.11

From: Andrew Farmer (andfarm_at_teknovis.com)
Date: 12/27/04

  • Next message: Andrew Farmer: "Re: [Full-Disclosure] new phpBB worm affects 2.0.11"
    To: Herman Sheremetyev <herman@swebpage.com>
    Date: Sun, 26 Dec 2004 15:42:08 -0800
    
    
    
    

    On 24 Dec 2004, at 14:06, Herman Sheremetyev wrote:
    > My patched phpBB 2.0.11 running on FreeBSD 4.10 was exploited by a new
    > variation of the worm this morning. I'm attaching the 2 perl scripts
    > it installs, one is an irc bot the other the worm itself.

    The worm code attached uses the same old 2.0.10 highlight
    vulnerability. You probably hadn't patched all your phpBB installs
    properly.

    
    

    
    

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html



  • Next message: Andrew Farmer: "Re: [Full-Disclosure] new phpBB worm affects 2.0.11"

    Relevant Pages