Page 1 of 1

Perl.Santy virus attacks phpBB-based message boards

Posted: Thu Dec 23, 2004 11:52 pm
by StevenRoy
This probably isn't completely relevant here, but it's still interesting:

From Symantec's Security Response site:

Perl.Santy is a worm written in Perl script that attempts to spread to Web servers running versions of the phpBB 2.x bulletin board software prior to 2.0.11, which are vulnerable to the PHPBB Remote URLDecode Input Validation Vulnerability. Other systems are not affected. If successful, the worm copies itself to the server and overwrites the files with the following extensions...


The version of phpBB used on this CCS64 message board is 2.0.11, which is safe. I feel better now that I've checked.

Re: Perl.Santy virus attacks phpBB-based message boards

Posted: Sat Dec 25, 2004 10:07 am
by Stuart Toomer
StevenRoy wrote:This probably isn't completely relevant here, but it's still interesting:

From Symantec's Security Response site:

Perl.Santy is a worm written in Perl script that attempts to spread to Web servers running versions of the phpBB 2.x bulletin board software prior to 2.0.11, which are vulnerable to the PHPBB Remote URLDecode Input Validation Vulnerability. Other systems are not affected. If successful, the worm copies itself to the server and overwrites the files with the following extensions...


The version of phpBB used on this CCS64 message board is 2.0.11, which is safe. I feel better now that I've checked.


I got Hakan to upgrade it a few days ago and it seems to be fine. Please infom me if there are any problems with the forum itself.