PDA

View Full Version : What about Mare-D


kkleyboecker
2-21-06, 11:37 AM
Is there any reason to be concerned about the Mare-D worm if I'm using Joomla on my POWWEB sites?

stevel
2-21-06, 11:53 AM
Hmm. I don't know if Joomla shares the same vulnerability as Mambo, so you need to check on that. Mare-D copies some files to /tmp, which it could certainly do on PowWeb, but I don't think it could get those files to do anything nasty because PowWeb blocks the web servers from operating port-opening server programs.

Nonetheless, you should always be concerned about vulnerabilities in scripts you are using and should install any and all security patches available. Complacency is dangerous.