 |
New Website Vulnerability
A vulnerability in PHP-CGI has been publicly outed this month that allows a site visitor to exploit your sites confidential source data. To check if your site is vulnerable, simply add a ?-s to the end of any php file on your site.
EG: http://www.example.com/index.php?-s
We've vetted our client sites and these appear to either ignore the request or return a 503 error. If your site shows colourful code text similar to if you view the source of your site, then you are vulnerable. Contact your host IMMEDIATELY for assistance.
Any Jaydean clients with concerns, please contact support@jaydean.com.au
|