Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> NukeSentinel(tm)
Author Message
Mitch
New Member
New Member



Joined: May 07, 2004
Posts: 17
Location: USA, Michigan

PostPosted: Thu Aug 12, 2004 3:55 pm Reply with quote

Hello,

I just installed NukeSentinel 2.01 on one of my clients sites. He claims that he updated his downloads section with a new download, a download linked from another one of his servers it was a .rar file, and when he tried to download it, he got banned by Sentinel and it said he attempted a Scripting Attack? Someone help me, because i'm tried of his rude self yelling at something that isn't my fault.....I should take it off and let the hackers have fun with his site

Mitch
 
View user's profile Send private message
sixonetonoffun
Spouse Contemplates Divorce



Joined: Jan 02, 2003
Posts: 2496

PostPosted: Thu Aug 12, 2004 4:22 pm Reply with quote

He most likely has filenames with like (newage)music.mp3 the () will have to be removed from the filenames and edited in the database.

_________________
[b][size=5]openSUSE 11.4-x86 | Linux 2.6.37.1-1.2desktop i686 | KDE: 4.6.41>=4.7 | XFCE 4.8 | AMD Athlon(tm) XP 3000+ | MSI K7N2 Delta-L | 3GB Black Diamond DDR
| GeForce 6200@433Mhz 512MB | Xorg 1.9.3 | NVIDIA 270.30[/size:2b8 
View user's profile Send private message
Mitch







PostPosted: Mon Aug 16, 2004 10:12 am Reply with quote

Hey sixonetonoffun,

Thanks for your reply, I have been busy and unable to get back to my post, I figured it out right after i posted, and it was the reason you posted. But my question now is, why does it have a issue with the ()? (And no i won't figure this one out after i hit Submit lol)

Mitch RavensScripts
 
sixonetonoffun







PostPosted: Mon Aug 16, 2004 10:31 am Reply with quote

Because there is no way to discriminate against attacks that use system(command) exec(cmd) or (select blah blah) and an innocent url request. Those are pretty generic examples but you should get the idea.
 
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> NukeSentinel(tm)

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©