Posted By
 Csabo on 2010-08-11 13:47:53
| Re: Trojan Horse Detected
From what I read the initial attack vector is FTP. MikeD is changing the FTP passwords.
Looks like powweb is running 5.2.12. I don't think we have anything open for a MySQL injection, and we don't have anything that accesses the file system (not even sure we're allowed). Though if you guys see something let me know.
The forum submission is especially restrictive, all tags are stripped. By all means - if you have time to help out and test - go at it, and see if you can "break" it. |