[thelist] os commerce instal

Rich Gray rich at f1central.net
Thu Nov 7 05:31:01 CST 2002


I think the phpbb hack used SQL injection which is another nasty kettle of
piranhas...
OSCommerce is pretty widespread so you're right, anyone can download a copy
and look for vulnerabilities in the code... :(

Rich
-----Original Message-----
From: thelist-admin at lists.evolt.org
[mailto:thelist-admin at lists.evolt.org]On Behalf Of Andrew Maynes
Sent: 07 November 2002 11:02
To: thelist at lists.evolt.org
Subject: RE: [thelist] os commerce instal


excellent

so this would explain how the hackers that attacked one of my phpbb forums
got
in.  They downloaded the script and went though it untill they found
something
they could exploit..... makes sense!

So hackers 'crackers' will have a copy of Oscommerce and are looking for
vunerablilities I guess.

cheers
Andrew





More information about the thelist mailing list