Welcome to HBH! If you have tried to register and didn't get a verification email, please using the following link to resend the verification email.

Vulnerabilities?


ghost's Avatar
0 0

I just did a scan on one of my sites and I got the following message saying

High Risk

%s%s%s 1%u1%u %a%s%p%d

Can someone explain why this would be high risk, and PM me an example? along with the solution to patch it.

Thx

Dantronix


n3w7yp3's Avatar
Member
0 0

More info would be helpful. What tool gave you that output? And what was it against? (for instance, OpenSSH, Apache, phpBB, etc).

The %'s are format strings, for example, %d is a number, and %s is a string.


ghost's Avatar
0 0

I used syhunt to check a site, to see what the results would be, heres some more info:-

Server: Apache/1.3.34 (Unix) mod_auth_passthrough/1.8 mod_log_bytes/1.2 mod_bwlimited/1.4 PHP/4.4.1 mod_ssl/2.8.25 OpenSSL/0.9.7a

Cheers

Dantronix