[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-Disclosure] new phpBB worm affects 2.0.11
- To: Herman Sheremetyev <herman@xxxxxxxxxxxx>
- Subject: Re: [Full-Disclosure] new phpBB worm affects 2.0.11
- From: Andrew Farmer <andfarm@xxxxxxxxxxxx>
- Date: Sun, 26 Dec 2004 15:42:08 -0800
On 24 Dec 2004, at 14:06, Herman Sheremetyev wrote:
My patched phpBB 2.0.11 running on FreeBSD 4.10 was exploited by a new
variation of the worm this morning. I'm attaching the 2 perl scripts
it installs, one is an irc bot the other the worm itself.
The worm code attached uses the same old 2.0.10 highlight
vulnerability. You probably hadn't patched all your phpBB installs
properly.
Attachment:
PGP.sig
Description: This is a digitally signed message part
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html