[thelist] os commerce instal

Andrew Maynes andrew at humanbehaviour.co.uk
Thu Nov 7 05:37:02 CST 2002


ok question!

The hosting company will turn on globals :)  whats the difference other than
waht was said before?  I would rather have them on :)

Andrew

-----Original Message-----
From: thelist-admin at lists.evolt.org
[mailto:thelist-admin at lists.evolt.org]On Behalf Of Rich Gray
Sent: Thursday, November 07, 2002 11:31
To: thelist at lists.evolt.org
Subject: RE: [thelist] os commerce instal


I think the phpbb hack used SQL injection which is another nasty kettle of
piranhas...
OSCommerce is pretty widespread so you're right, anyone can download a copy
and look for vulnerabilities in the code... :(

Rich
-----Original Message-----
From: thelist-admin at lists.evolt.org
[mailto:thelist-admin at lists.evolt.org]On Behalf Of Andrew Maynes
Sent: 07 November 2002 11:02
To: thelist at lists.evolt.org
Subject: RE: [thelist] os commerce instal


excellent

so this would explain how the hackers that attacked one of my phpbb forums
got
in.  They downloaded the script and went though it untill they found
something
they could exploit..... makes sense!

So hackers 'crackers' will have a copy of Oscommerce and are looking for
vunerablilities I guess.

cheers
Andrew


--
For unsubscribe and other options, including
the Tip Harvester and archive of thelist go to:
http://lists.evolt.org Workers of the Web, evolt !

---
Incoming mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.410 / Virus Database: 231 - Release Date: 31/10/2002

---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.410 / Virus Database: 231 - Release Date: 31/10/2002




More information about the thelist mailing list