Annoying attack vector: users/edit.php, yacs threat?
I started running awstats on my yacs based site and I'm seeing a ton of hits on users/edit.php...is it a security threat?
| Avancement | ![]() |
| Workflow | Besoin d'aide |
| Statut | Le problème a été enregistré |
I'm seeing a lot of activity on the users/edit.php path, looks like automated probes, in my logfiles. After some googling, I'm pretty sure it's an attack vector on some software called "File Store" (sql injection, according to http://xforce.iss.net/xforce/xfdb/25183.)
Has anyone else noticed this? Is it a non-issue for Yacs? I'm thinking of blocking those incoming IPs at my firewall to help keep my server and logfiles uncluttered with "street trash".
tnx,
R
Has anyone else noticed this? Is it a non-issue for Yacs? I'm thinking of blocking those incoming IPs at my firewall to help keep my server and logfiles uncluttered with "street trash".
tnx,
R
