The eAuction Support Forums
https://www.everyscript.de/cgi-bin/yabb/YaBB.pl
eAuction 1.6.1.x >> Unsorted >> hacker alert
https://www.everyscript.de/cgi-bin/yabb/YaBB.pl?num=1181658967

Message started by firstrincewind on 06/12/07 at 15:36:06

Title: hacker alert
Post by firstrincewind on 06/12/07 at 15:36:06

today i get several mails like this:

Date: Tue Jun 12 10:38:39 2007
(1) Form has been hacked by IP: 74.6.17.221
User: N/A
Content: usercenterâ[ch65533]©=1

( the auction is only installed, not used yet, so i do not know what this attack should have done)
Anyone a idea how they make this/how to avoid tis?

Title: Re: hacker alert
Post by Dieter Werner on 06/12/07 at 16:04:33

The IP is one of the IP's that inktomisearch.com uses.
inktomisearch.com
is the search engine of yahoo.com

It looks like this search engine uses search strings that contains character which are not allowed with the script.

So don't be afraid about this.
I still try to find the bad strings - bud it's hard.

The eAuction Support Forums » Powered by YaBB 2.2!
YaBB © 2000-2007. All Rights Reserved.