[CentOS] C5 MySQL injection attack ("Union Select")

Gordon Messmer gordon.messmer at gmail.com
Thu Mar 24 16:40:44 UTC 2016


On Thu, Mar 24, 2016 at 9:08 AM, Always Learning <centos at u64.u22.net> wrote:
>> I can't stress enough, mysql-5.0 on el5 is absolutely not updated
>> security wise.
>
> Thanks. Reading it now.

Just to be clear: you absolutely should upgrade to a currently
maintained version of MySQL.

However, upgrading will not protect you from SQL injection attacks.
The probes you're seeing aren't targeting the SQL server.  They're
targeting your php code.



More information about the CentOS mailing list