Re: Security problem in apache with forms?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 10/30/07, Christian Folini <christian.folini@xxxxxxx> wrote:
> Hey Harold,
>
> On Tue, Oct 30, 2007 at 02:29:18PM +0100, Harald Heggelund wrote:
> > Since installing a new slackware server with apache and sendmail
> > out-of-the-box, I have noticed my server is sending (moderate amounts of)
> > spam worldwide.
> > I suspect some webform or cgi-script. In the apache log, I see lots of these
> > entries:
> >
> > "POST http://87.118.100.88/proxy5/check.php HTTP/1.1" 404 297
> > "POST http://82.228.61.77:49627/Chcks/Data_I.php HTTP/1.1" 404 297

> It's rather typical to see this in a logfile of a server
> connected to the internet. But the fact, that the request contains
> more than the path is a bit unusual for me.

See:
http://wiki.apache.org/httpd/ProxyAbuse

Joshua.

---------------------------------------------------------------------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
   "   from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx


[Index of Archives]     [Open SSH Users]     [Linux ACPI]     [Linux Kernel]     [Linux Laptop]     [Kernel Newbies]     [Security]     [Netfilter]     [Bugtraq]     [Squid]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Samba]     [Video 4 Linux]     [Device Mapper]

  Powered by Linux