You are missing our premiere tool bar navigation system! Register and use it for FREE!

NukeCops  
•  Home •  Downloads •  Gallery •  Your Account •  Forums • 
Readme First
- Readme First! -

Read and follow the rules, otherwise your posts will be closed
Modules
· Home
· FAQ
· Buy a Theme
· Advertising
· AvantGo
· Bookmarks
· Columbia
· Community
· Donations
· Downloads
· Feedback
· Forums
· PHP-Nuke HOWTO
· Private Messages
· Search
· Statistics
· Stories Archive
· Submit News
· Surveys
· Theme Gallery
· Top
· Topics
· Your Account
Who's Online
There are currently, 50 guest(s) and 0 member(s) that are online.

You are Anonymous user. You can register for free by clicking here
New MySQL Vulnerability
SecurityMySQL has released information today about a new vulnerability. This exploit check has been integrated into a new Analyzer dot release: 1.89.1. Included in this dot release is the ability to display config.php values even if a MySQL connection isn't established.

View it here--> Analyzer 1.89.1
Posted on Friday, February 07 @ 22:26:07 CET by Zhen-Xjell
 
Related Links
· Computer Cops
· More about Security
· News by Zhen-Xjell


Most read story about Security:
PHP-Nuke admin.php security hole - PATCHED

Article Rating
Average Score: 5
Votes: 1


Please take a second and vote for this article:

Excellent
Very Good
Good
Regular
Bad


Options

 Printer Friendly Page  Printer Friendly Page

 Send to a Friend  Send to a Friend

Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register

Re: New MySQL Vulnerability (Score: 1)
by ITEagle03 on Saturday, February 08 @ 15:40:00 CET
(User Info | Send a Message) http://www.seanhiatt.ws
Do you have a link referring to the MySQL vulnerability? I've searched around and haven't been able to find it.


  • Re: by Zhen-Xjell on Saturday, February 08 @ 21:11:07 CET

Re: New MySQL Vulnerability (Score: 1)
by RStar23 on Saturday, February 08 @ 21:58:45 CET
(User Info | Send a Message)
First, thanks for Analyzer - nice tool.

Second, I have done a full updated MySQL to 3.23.55 (was at 3.23.43). Now when I run Anaylzer 1.89.1 it still tells me that I have a vulnerable mysql client (3.23.39).

Since the update loaded my server and client code, I am not sure how this is happening. I would appreciate your insight.

thx

RStar23



Re: New MySQL Vulnerability (Score: 0)
by Anonymous on Saturday, February 08 @ 22:13:34 CET
Join the club, I ran the analyzer, got the error about having a vunerable server (3.23.49) followed the link, downloaded the latest (3.23.55) shutdown my produciton server, disconnecting 179 customers, installed the update, rebooted the server and then re-ran the analyzer and it claims I have the wrong one still, (3.23.49). So, now, after pissing off almost 200 customers, I'm wondering if I was running the wrong one to start with.

Not a good thing here guys!!!!!


  • Re: by Zhen-Xjell on Saturday, February 08 @ 22:45:43 CET

Re: New MySQL Vulnerability (Score: 1)
by Zhen-Xjell on Saturday, February 08 @ 22:38:56 CET
(User Info | Send a Message) http://castlecops.com
Per the mysql changelog if you upgraded you are fine. On running analyzer what version of the server and client does it say you have?


  • Re: by FHFGhost on Saturday, February 08 @ 22:56:37 CET
    • Re: by Zhen-Xjell on Sunday, February 09 @ 02:24:17 CET
  • Re: by RStar23 on Monday, February 10 @ 21:04:20 CET

Re: New MySQL Vulnerability (Score: 0)
by Anonymous on Sunday, February 09 @ 07:26:12 CET
Can you tell me why this 'tool' says i'm
running a old version of MySQL while i'm
running the latest release!

mysql --version
mysql Ver 12.17 Distrib 4.0.10-gamma, for pc-linux (i686)

mysqld --version
mysqld Ver 4.0.10-gamma for pc-linux on i686

Grtnx,

Jan Koetze



Re: New MySQL Vulnerability (Score: 1)
by nero6 on Tuesday, August 12 @ 14:13:32 CEST
(User Info | Send a Message) http://forum.jsoftj.com/
Free Download Manager [www.jsoftj.com] - FlashGet [www.jsoftj.com] - Windows Live Messenger [www.jsoftj.com] - Y! Multi Messenger [www.jsoftj.com] - Messenger Plus! Live [www.jsoftj.com] - DirectX [www.jsoftj.com] - Nokia PC Suite [www.jsoftj.com] - ZoneAlarm [www.jsoftj.com] - DVB Dream [www.jsoftj.com] - skype [www.jsoftj.com] - ESET NOD32 Antivirus [www.jsoftj.com] - Google Earth [www.jsoftj.com] - فتح اكثر من ياهو [www.jsoftj.com] - فتح اكثر من ماسنجر 8.5 [www.jsoftj.com] - فتح اكثر من ماسنجر 9 [www.jsoftj.com] Norton [www.jsoftj.com] - RealPlayer [www.jsoftj.com] -   Windows Media Player [www.jsoftj.com] - Kaspersky Anti-Virus Mobile [www.jsoftj.com] - Internet Download Manager [www.jsoftj.com] - Internet Explorer [www.jsoftj.com] -  Youtube [www.jsoftj.com] -  LimeWire Pro [www.jsoftj.com] - Download Accelerator Plus [www.jsoftj.com] - Windows Live Messenger 9 [www.jsoftj.com] - Opera [www.jsoftj.com] - Nero 8 [www.jsoftj.com]



Re: New MySQL Vulnerability (Score: 1)
by nero6 on Tuesday, August 12 @ 14:13:37 CEST
(User Info | Send a Message) http://forum.jsoftj.com/
Media Player Classic [www.jsoftj.com] - Yahoo! Messenger [www.jsoftj.com] - Kaspersky Virus Removal Tool [www.jsoftj.com] - Kaspersky Internet Security 2009 [www.jsoftj.com] - Kaspersky Anti-Virus 2009 [www.jsoftj.com] - Trojan Remover [www.jsoftj.com] - Hide IP Platinum [www.jsoftj.com] - Update AVG [www.jsoftj.com] - Kaspersky Anti-Virus Update [www.jsoftj.com] - McAfee Updates [www.jsoftj.com] - BitDefender [www.jsoftj.com] 3GP Player [www.jsoftj.com] - MobiMB Mobile Media Browser [www.jsoftj.com] - Online TV Player [www.jsoftj.com] - Satellite TV For PC 2008 Elite Edition [www.jsoftj.com] - Free Internet TV [www.jsoftj.com] - ProgDVB [www.jsoftj.com] - Super Internet TV [www.jsoftj.com] - TVUPlayer [www.jsoftj.com] - Super Internet TV Satellite 2008 [www.jsoftj.com] - WinRAR [www.jsoftj.com] - WinZip [www.jsoftj.com]



Re: New MySQL Vulnerability (Score: 1)
by nero6 on Tuesday, August 12 @ 14:13:44 CEST
(User Info | Send a Message) http://forum.jsoftj.com/
فيديو youtube [forum.jsoftj.com]- فيديو Google - انمي [forum.jsoftj.com] - افلام كرتون [forum.jsoftj.com] - توم وجيري [forum.jsoftj.com] - القط والفار [forum.jsoftj.com] - افلام كرتون اسلامية [forum.jsoftj.com] - قصص واقعية [forum.jsoftj.com] - قصص وعبر [forum.jsoftj.com] - قصص الانبياء [forum.jsoftj.com] - قصص القرآن الكريم [forum.jsoftj.com] - قصص وحكايات اطفال [forum.jsoftj.com] - خواطر [forum.jsoftj.com] - اناشيد اسلامية [forum.jsoftj.com] - اناشيد اطفال [forum.jsoftj.com] - اناشيد فرقة طيور الجنة [forum.jsoftj.com] - ديكور [forum.jsoftj.com] - ديكور منازل [forum.jsoftj.com] - مكياج [forum.jsoftj.com] - طبخ في مطبخ حواء [forum.jsoftj.com] - ازياء و موضة [forum.jsoftj.com] - ماسنجر [forum.jsoftj.com] - توبيكات [forum.jsoftj.com] - موبايل MOBILE [forum.jsoftj.com] - العاب طبخ [girls-games.jsoftj.com] - العاب باربي [girls-games.jsoftj.com] - Youtube [www.jsoftj.com] - youtube.com [www.jsoftj.com] - العاب بنات جديدة [girls-games.jsoftj.com] - العاب قص الشعر - شعر [girls-games.jsoftj.com] - Read the rest of this comment...



Re: New MySQL Vulnerability (Score: 1)
by nero6 on Tuesday, August 12 @ 14:13:50 CEST
(User Info | Send a Message) http://forum.jsoftj.com/
العاب جي سوفت [girls-games.jsoftj.com] - العاب بنات جي سوفت [girls-games.jsoftj.com] - لعبة تلبيس براتز [girls-games.jsoftj.com] - العاب اولاد [girls-games.jsoftj.com] - العاب رجال [girls-games.jsoftj.com] -   العاب بنات [girls-games.jsoftj.com] - العاب طبخ [girls-games.jsoftj.com] - العاب باربي [girls-games.jsoftj.com] - العاب مكياج [girls-games.jsoftj.com] - العاب بنات جديدة [girls-games.jsoftj.com] - العاب اطفال [girls-games.jsoftj.com] - العاب ترتيب الغرف [girls-games.jsoftj.com] - العاب ديكور [girls-games.jsoftj.com] - العاب قص الشعر [girls-games.jsoftj.com] - العاب تلبيس [girls-games.jsoftj.com] - العاب ميك اب [girls-games.jsoftj.com] -  | Dress Up GAMES [girls-games.jsoftj.com] | Kids Games [girls-games.jsoftj.com] | Barbie Games [girls-games.jsoftj.com] | Room Decor Games [girls-games.jsoftj.com] | Cooking Games [girls-games.jsoftj.com] | Adventure Games [girls-games.jsoftj.com] | Action Games [girls-games.jsoftj.com] | Makeover makeup make up Games [girls-games.jsoftj.com] | Other Games [girls-games.jsoftj.com] - موقع [site.jsoftj.com] | جي سوفت [www.jsoftj.com] | برامج [www.jsoftj.com] | العاب بنات [girls-games.jsoftj.com] |

Read the rest of this comment...


Powered by · TOGETHER TEAM srl ITALY http://www.togetherteam.it · DONDELEO E-COMMERCE http://www.DonDeLeo.com
Web site engine's code is Copyright © 2002 by PHP-Nuke. All Rights Reserved. PHP-Nuke is Free Software released under the GNU/GPL license.
Page Generation: 0.106 Seconds - 269 pages served in past 5 minutes. Nuke Cops Founded by Paul Laudanski (Zhen-Xjell)
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::