I've seen today a server with Centos being hacked this way through an old install of oscommerce
as usual, the atacker uploaded a phpshell and downloaded the exploit to gain root, after that defaced all sites on server
Server was running Centos 5 64bit with kernel 2.6.18-194.8.1
attacker overwrote every index* file, when atacker was discovered, tried to rm -rf * whole drive, luckily we caught it on time.
Centos 5 IS vulnerable now
|