[CentOS] C5 MySQL injection attack ("Union Select")

Thu Mar 24 16:40:44 UTC 2016
Gordon Messmer <gordon.messmer at gmail.com>

On Thu, Mar 24, 2016 at 9:08 AM, Always Learning <centos at u64.u22.net> wrote:
>> I can't stress enough, mysql-5.0 on el5 is absolutely not updated
>> security wise.
>
> Thanks. Reading it now.

Just to be clear: you absolutely should upgrade to a currently
maintained version of MySQL.

However, upgrading will not protect you from SQL injection attacks.
The probes you're seeing aren't targeting the SQL server.  They're
targeting your php code.