Webhost hit by cPanel exploit
27-09-2006, 17:54
|
#16
|
|
Inactive
Join Date: Mar 2004
Location: Swinton
Services: O2 standard
Posts: 2,499
|
Re: Webhost hit by cPanel exploit
I thought the latest patch from MS has sorted that out.
http://secunia.com/advisories/21989/
|
|
|
27-09-2006, 17:55
|
#17
|
|
cf.mega poster
Join Date: Mar 2006
Location: Oslo, Norway.
Age: 36
Services: Canal Digital: 50/10
Posts: 7,577
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by pedantic
|
It did, i'm thinking that was before the patch was released 2 days ago was it?
|
|
|
27-09-2006, 18:00
|
#18
|
|
Hello !
Join Date: Mar 2004
Location: Somewhere
Services: Sky, AppleTV, Netflix
Posts: 16,789
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by bopdude
But why then would my AV flash up that warning ???
|
My Nod32 came up with the same thing too.
Anyone know if we are at risk or why it came up ?
|
|
|
27-09-2006, 18:01
|
#19
|
|
Inactive
Join Date: Mar 2004
Location: Swinton
Services: O2 standard
Posts: 2,499
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by Druchii
It did, i'm thinking that was before the patch was released 2 days ago was it?
|
Dunno lol
I just used the link supplied by KP and got this.....
Quote:
VML test case, CVE-2006-4868
This is a test page to determine whether your browser is vulnerable to the VML vulnerability specified in CVE-2006-4868.
Since your browser is not Internet Explorer 5 or higher it does not support the vulnerable VML module, and you are therefor not vulnerable.
If you would like to know more about the Zeroday Emergency Response Team, please visit http://isotf.org/zert/
|
Which does point to that exploit in my previous post. No big deal though.
|
|
|
27-09-2006, 19:41
|
#20
|
|
Dr Pepper Addict
Cable Forum Admin
Join Date: Oct 2003
Location: Nottingham
Age: 63
Services: IDNet FTTP (1000M), Sky Q TV, Sky Mobile, Flextel SIP
Posts: 30,317
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by KingPhoenix
|
That site tests if your IE is vulnerable to the VML security hole.
Mine was, so I installed the MS patch available here ;
http://www.microsoft.com/technet/sec.../MS06-055.mspx
Now IE passes the test ok.
__________________
Baby, I was born this way.
|
|
|
27-09-2006, 20:58
|
#21
|
|
Hello !
Join Date: Mar 2004
Location: Somewhere
Services: Sky, AppleTV, Netflix
Posts: 16,789
|
Re: Webhost hit by cPanel exploit
So is that why Nod32 thinks it is a virus then when I click on that link ?
I never use IE, just Firefox.
|
|
|
27-09-2006, 21:01
|
#22
|
|
-
Join Date: Jul 2003
Location: Poole, Dorset
Age: 40
Services: FreeSat+
Tivo
V-Box
VM 60MBit
Posts: 13,365
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by Paul
KP said in his post that I-web have patched their servers already so a patch must be out there for the problem.
|
OK well I'll run a CPanel update and see what happens.
---------- Post added at 20:01 ---------- Previous post was at 20:00 ----------
Yeah there was a news item at the top of my WHM Admin Page telling me there was an update to fix the vulnerability. Running the update now
|
|
|
27-09-2006, 21:05
|
#23
|
|
Inactive
Join Date: Jun 2003
Location: Essex innit
Age: 52
Services: Sky HD + 16Mb ADSL
BT Telephone
Posts: 15,735
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by Zeph
OK well I'll run a CPanel update and see what happens.
---------- Post added at 20:01 ---------- Previous post was at 20:00 ----------
Yeah there was a news item at the top of my WHM Admin Page telling me there was an update to fix the vulnerability. Running the update now
|
Cool. Thought you may have missed KPs post
|
|
|
27-09-2006, 21:07
|
#24
|
|
Inactive
Join Date: Mar 2005
Location: bolton
Age: 56
Services: non
wife took control
Posts: 5,425
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by Paul M
|
All fixed, i feel better now
|
|
|
27-09-2006, 22:53
|
#25
|
|
cf.mega poster
Join Date: Dec 2003
Age: 50
Posts: 7,101
|
Re: Webhost hit by cPanel exploit
What, that site is knowingly hosting a trojan and asking people to click the link?!? How irresponsible of them.
|
|
|
27-09-2006, 23:00
|
#26
|
|
cf.mega poster
Join Date: Mar 2006
Location: Oslo, Norway.
Age: 36
Services: Canal Digital: 50/10
Posts: 7,577
|
Re: Webhost hit by cPanel exploit
Quote:
Originally Posted by Gareth
What, that site is knowingly hosting a trojan and asking people to click the link?!? How irresponsible of them.
|
No, they are knowingly osting the exploit, then seeing if you're immune to it or not. No malicious code. Just the exploit. If you get my drift.
|
|
|
28-09-2006, 00:01
|
#27
|
|
CF Resident Dog
Join Date: Mar 2005
Posts: 15,379
|
Re: Webhost hit by cPanel exploit
My IE crashed when i went to http://www.isotf.org/zert/testvml.htm. Installing all the patches from MS update sorted that though. Glad i only use Opera to log into sites!
|
|
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT +1. The time now is 19:47.
|