Ticket creation failed

2004-06-18 Thread bpt
No permission to create tickets in the queue 'accounts' -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 521-1 [EMAIL PROTECTED] http://www.debian.org/security/

Re: Advice needed, trying to find the vulnerable code on Debian webserver.

2004-06-18 Thread Steve Kemp
On Sat, Jun 19, 2004 at 10:42:56AM +1000, Ross Tsolakidis wrote: > Hi all, > > I did a search in the logs on some of the suspicious users and found a > match. > The files that are being downloaded then executed see to be IRC bots. > http://www.energymech.net/ > > Here are some log files. > > 193

RE: Advice needed, trying to find the vulnerable code on Debian webserver.

2004-06-18 Thread Ross Tsolakidis
Hi all, I did a search in the logs on some of the suspicious users and found a match. The files that are being downloaded then executed see to be IRC bots. http://www.energymech.net/ Here are some log files. 193.95.112.71 - - [18/Jun/2004:22:57:04 +1000] "GET /modules/coppermine/themes/default/t

Re: Advice needed, trying to find the vulnerable code on Debian webserver.

2004-06-18 Thread Steve Kemp
On Sat, Jun 19, 2004 at 10:42:56AM +1000, Ross Tsolakidis wrote: > Hi all, > > I did a search in the logs on some of the suspicious users and found a > match. > The files that are being downloaded then executed see to be IRC bots. > http://www.energymech.net/ > > Here are some log files. > > 193

RE: Advice needed, trying to find the vulnerable code on Debian webserver.

2004-06-18 Thread Ross Tsolakidis
Hi all, I did a search in the logs on some of the suspicious users and found a match. The files that are being downloaded then executed see to be IRC bots. http://www.energymech.net/ Here are some log files. 193.95.112.71 - - [18/Jun/2004:22:57:04 +1000] "GET /modules/coppermine/themes/default/t