Go to main content

Textpattern CMS support forum

You are not logged in. Register | Login | Help

#1 2009-10-18 16:29:36

kvnmcwebn
Member
From: Ireland
Registered: 2007-01-27
Posts: 724
Website

is this an attack or something

in my visitor logs:

 	/ ​lists/​admin/​index.​php?​_SERVER[ConfigFile]=../../../.​ ./../../../../../../../../../.​./../../../../../../../../../​etc/​passwd

its a bad hen that wont scratch itself.
photogallery

Offline

#2 2009-10-18 16:59:03

jm
Plugin Author
From: Missoula, MT
Registered: 2005-11-27
Posts: 1,746
Website

Re: is this an attack or something

Yeah. It’s probably not targeted directly at you – just a bot or script kiddie. Does it actually work on your site? Most likely it doesn’t, but add this to your httpd.conf if you have access to it, otherwise to your .htaccess to serve a 403 for requests with .. in them:

<IfModule mod_alias.c>
    RedirectMatch 403 \.\.
</IfModule>

Last edited by jm (2009-10-18 16:59:12)

Offline

#3 2009-10-19 10:30:30

kvnmcwebn
Member
From: Ireland
Registered: 2007-01-27
Posts: 724
Website

Re: is this an attack or something

ok thanks


its a bad hen that wont scratch itself.
photogallery

Offline

Board footer

Powered by FluxBB