Recent Topics

1 Dec 15, 2005 16:01    

Got this from a referrer:

search.yahoo.com

inurl:xmlsrv

/blogs/xmlsrv/rss2.php?blog=2

Makes me think someone's trying to locate the xmlsrv rss file that they can chop at. So is there any bug, vunerability with xmlsrv?

2 Dec 15, 2005 16:43

not that i am aware of .. if the extent of the actual visit was what you pasted I wouldnt be too concerned.

PS: this was posted in the wrong area, I'll go ahead and move it but please be more careful :)

3 Dec 15, 2005 16:46

It's more likely that they're looking for xmlrpc.php. There have been security holes with it in the past, but if you're using 0.9.1 or later you should be fine. If you want you could always change the name of the xmlsrv folder (then edit the /conf/_advanced.php file to match). But I wouldn't worry about it.


Form is loading...