[Info-vax] 'Kill tool' released for unpatched Apache server vulnerability

Neil Rieck n.rieck at sympatico.ca
Thu Aug 25 08:18:17 EDT 2011


I have got one OpenVMS box (with an Apache server) running on the
public internet. Look what I found in my Apache error log this
morning.

[Wed Aug 24 17:00:43 2011] [error] [client 59.175.238.121] File does
not exist: /apache$Documents/main/w00tw00t.at.blackhats.romania
n.anti-sec:)
[Wed Aug 24 17:00:43 2011] [error] [client 59.175.238.121] File does
not exist: /apache$Documents/main/phpMyAdmin
[Wed Aug 24 17:00:44 2011] [error] [client 59.175.238.121] File does
not exist: /apache$Documents/main/phpmyadmin
[Wed Aug 24 17:00:45 2011] [error] [client 59.175.238.121] File does
not exist: /apache$Documents/main/pma
[Wed Aug 24 17:00:46 2011] [error] [client 59.175.238.121] File does
not exist: /apache$Documents/main/myadmin
[Wed Aug 24 17:00:46 2011] [error] [client 59.175.238.121] File does
not exist: /apache$Documents/main/MyAdmin

Fortunately for us, we do not have PHP enabled on that box.

Neil Rieck
Waterloo, Ontario, Canada




More information about the Info-vax mailing list