FYI…

- http://isc.sans.org/diary.html?storyid=2360
Last Updated: 2007-03-05 22:11:14 UTC ~ "A vulnerability in phpMyFAQ, which is an open source FAQ system for PHP and various databases, has been published back in February ( http://www.phpmyfaq.de/advisory_2007-02-18.php )… This is being exploited in the wild. The vulnerability allows an attacker to upload arbitrary files on the server. As you can probably guess, currently attackers first upload a php shell, after which the machine is typically turned into a spam spitting server. If you are using phpMyFAQ, be sure to install the updates available on their web site ( http://www.phpmyfaq.de/ )."

:ph34r: