[NTLUG:Discuss] ??possible web vulnerability ??

Rick Moncello rmoncello at attbi.com
Fri Jun 21 11:55:33 CDT 2002


The following URLs will provide some background on what they were attempting
to access.

http://sourceforge.net/projects/roads/
http://online.securityfocus.com/bid/2370
http://online.securityfocus.com/archive/1/212156

I have not received hits to any of these URLs on my Apache server.  Judging
from the info contained in the above links, it appears as if someone is
searching for systems with known vulnerabilities which allow access to any
file on the server.

Rick.

-----Original Message-----
From: discuss-admin at ntlug.org [mailto:discuss-admin at ntlug.org]On Behalf
Of Richard Geoffrion
Sent: Friday, June 21, 2002 11:22 AM
To: discuss at ntlug.org
Subject: [NTLUG:Discuss] ??possible web vulerability ??


I'm looking through some server log files and I'm seeing several hits to
certain web pages that are NOT on the web server.

Specifically

/ROADS/
/way-board/
/index.php
/edit_image.php

This server is not nor has it ever been an apache web server (it's a Novell
Web server 3.1)  nor is it PHP capable.

Is there some new script-kiddie PHP vulerability out or is someone just
fluke scanning a webserver for possible web pages?  I'm preparing to convert
this particular web server to Slackware/Apache, and I don't want need any
GOTCHA's getting me.

-Richard


_______________________________________________
http://www.ntlug.org/mailman/listinfo/discuss





More information about the Discuss mailing list