Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 11 Aug 2007 13:43:52 -0500
From:      Erik Osterholm <freebsd-lists-erik@erikosterholm.org>
To:        Brent <mrb@bmyster.com>
Cc:        questions@freebsd.org
Subject:   Re: server was hacked
Message-ID:  <20070811184352.GA23480@idoru.cepheid.org>
In-Reply-To: <20070811110231.M84490@bmyster.com>
References:  <20070811110231.M84490@bmyster.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sat, Aug 11, 2007 at 07:20:31AM -0400, Brent wrote:
> a compromised mambo site. after getting rid of the program I changed
> our router to disallow this type of traffic..& started trying to fix
> the box. Im pretty sure that root wasnt compromised but im going to
> re-install anyway. my question has anyone run into this problem with
> CMS sites, HOw excatly are they getting in ?

Lots of CMS have long histories of vulnerabilities.  Check out
www.securityfocus.com e.g.
http://search.securityfocus.com/swsearch?query=mambo&sbm=bid&submit=Search%21&metaname=alldoc&sort=swishrank
for some details.


Erik



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20070811184352.GA23480>