Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Google searches pinpoint malicious code
Robert Lemos, 2006-07-11
Comments Mode:
Could be useful indeed! 2006-07-11
Penguinisto
Google searches pinpoint malicious code 2006-07-13
Sebastian Steinlechner
This is actively being exploited at the moment, concerning a remote code injection in Mambo/Joomla installations. The exploit code searches for index.php?option=com_performs via google and uses a bug in performs.php to execute a remote php script.

As far as I know, this vulnerability is not yet fixed/known by the Mambo developers.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/newsbriefs/248/1206#1206
But they don't execute.... 2006-07-14
Roger







 

Privacy Statement
Copyright 2009, SecurityFocus