|
|
Critical Security Hole - MySQL | ||
Discussion by vizskywalker with 4 Replies.
Last Update: October 7, 2005, 4:01 pm | |||
![]() |
|
|
~Viz
How did you stumble onto this exactly though? :S
After further analysis, it seems the only thing this hole gives access to is basic information about the server, databases, no tables, status, processes, and the like, no passwords, no permissions information, still this information could be invaluable in cracking another security hole.
I have reported this to OpaQue, and he reported it to the techies in chare of the server (since it's a linux server and opaQue doesn't do linux) This weekend, if he's on, I'm going to try and work with him to identify the problem and resolve it if the tchies haven't already.
~Viz
Are you sure you didn't add some guest account or anything to your user-db? Or hardcoded anything about a guest account in your code?
~Viz
Similar Topics:
Apple Itunes Security Flaw Discover...
Network Security
Internet Explorer Security Issue
Serious Problem Here Asta is probably hacked (1)
|
(14) Organization I don't know about you...
|
HOME 





Healthy Body = Functional Body. Hollywood Look Side Effect: Healthy Function
Book 01 - The Hunchback of Notre Dame by Victor Hugo (Chs 1-6)

