Thread: SQL exploiters
View Single Post
Old 09-12-2005, 09:33 PM  
pornicopia
Confirmed User
 
pornicopia's Avatar
 
Industry Role:
Join Date: Jan 2005
Location: united States
Posts: 156
SQL exploiters

Hey guys!

Im sure many of you are already aware of an sql exploit that allows people to use your email submission scripts to send spam to people.

I was looking through my search engine logs and I found the following,


Code:
1.0 42c706e7 7bit hahahahahahahahahahahahahahahahahahahahahahahahahahahaha=0689431323hahahaha bcc boundary= charset content-transfer-encoding content-type format. from [email protected] [email protected] message mime mime-version multi-part multipart/mixed qly subject text/plain us-ascii
I did some research and there is an exploit that will allow user to force your sendmail to send out more than submissions from your visitors.

Just to give you the heads up, as Im sure most of you have protection already in place, Im sure some poor shlubs don't...

You can learn more about this exploit by typing "[email protected]" In google.

Later.
pornicopia is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote