|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Website Pro v2.0 (NT) Configuration Issues
Christian Antkow (xian
IDSOFTWARE.COM)Tue, 16 Feb 1999 17:45:09 -0600
- Messages sorted by: [ date ][ thread ][ subject ][ author ]
- Next message: Anthony C . Zboralski: "[HERT] Advisory #002 Buffer overflow in lsof"
- Previous message: Joe Stewart: "Re: ICQ99 crash"
As some of you might be aware, our website (www.idsoftware.com) was hacked this morning using the "out-of-the-box" features of Website Pro 2.0. The perpetrator used /cgi-dos/args.bat as well as /cgi-win/uploader.exe to upload new files and overwrite our index.html file with a "Free Kevin" webpage (identical to the opening page of www.2600.com). Any admins out there running Website Pro for NT might want to double check your security settings, and possibly remove these demo files if you don't have an explicit need for them to exist. Cheers, -Xian
- Next message: Anthony C . Zboralski: "[HERT] Advisory #002 Buffer overflow in lsof"
- Previous message: Joe Stewart: "Re: ICQ99 crash"