*THIS B*STR*D attempt to hack my machine...?
From Logs (and these is not the first time!)
A total of 1 sites probed the server
* * 143.225.81.253
*
*A total of 3 possible successful probes were detected (the following URLs
*contain strings that match one or more of a listing of strings that
*indicate a possible exploit):
*
* * /wiki/index.php?get=../../../../../../../../../../../../../etc/passwd%00 HTTP Response 200
* * /wiki/index.php/index.php?get=../../../../../../../../../../../../../etc/passwd%00 HTTP Response 200
* * /index.php?get=../../../../../../../../../../../../../etc/passwd%00 HTTP Response 200
what I can to do?
ATTENTION!] The package is installed by default as Yum install mediawiki
Is a possible Alias problem?
in etc/httpd/conf.d/
I have a mediawiki.conf
with:
Alias /wiki /usr/share/mediawiki
Very appreciate an ASAP Reply
(I don't ask any time ASAP this is the first time...
if is not a BIG security problem Excuse me (sincerly))