search for: 1pacb7q

Displaying 3 results from an estimated 3 matches for "1pacb7q".

2016 Mar 24
3
C5 MySQL injection attack ("Union Select")
...e mysql-5.0.95* packages are not supported. A very long time ago, Red Hat upgraded mysql for el5 to an SCL. The current supported version is: mysql55-mysql-5.5.45-1.el5* I guarantee that the 5.0.95 packages have security issues. Here is how to move to the newer mysql55 packages: http://red.ht/1pAcb7q I can't stress enough, mysql-5.0 on el5 is absolutely not updated security wise. The last update to it happened on 22-Jan-2013 and was in CentOS-5.9 .. we are now in 5.11 and there have been upgrades to mysql55 since then to fix security issues. Here is more info on this MySQL 5.0 to 5.5 upg...
2016 Mar 24
0
C5 MySQL injection attack ("Union Select")
On Thu, 2016-03-24 at 10:48 -0500, Johnny Hughes wrote: > I guarantee that the 5.0.95 packages have security issues. Here is how > to move to the newer mysql55 packages: > > http://red.ht/1pAcb7q > > I can't stress enough, mysql-5.0 on el5 is absolutely not updated > security wise. The last update to it happened on 22-Jan-2013 and was in > CentOS-5.9 .. we are now in 5.11 and there have been upgrades to mysql55 > since then to fix security issues. > > Here is mor...
2016 Mar 24
10
C5 MySQL injection attack ("Union Select")
mysql Ver 14.12 Distrib 5.0.95, for redhat-linux-gnu (x86_64) using readline 5.1 I spotted something strange and immediately installed a routine to automatically impose an iptables block when the key used for database access is excessively long. My URL was something like this ...../...../.....php?key=123456 The injection was something like this