We build. You grow.

Get best community software here

Start a social network, a fan-site, an education project with oxwall - free opensource community software

Security Hole?!? | Forum

W.C
W.C Nov 10 '15

hello,


i dont know it is a security hole or not...


right now, my oxwall was down :( i take a look at the Server log files and find a huge amount of entrys from this:


xxx.xxx.xxx.xxx (ip) that call /base/ping/index/ (URL) with 83 Bytes (size) for URL/Forum/ (reffer url).


if you call the oxwall System with this URL: http://url.tld/base/ping/index/ it Returns this: {"stack":[]}


wtf is this hole? Looks like a stack Overflow attack.


Please have a look at this!!!


with best regards

ross Team
ross Nov 10 '15
Please do the search before posting anything on the forum: http://www.oxwall.org/forum/topic/16784?page=1#post-84625