Tycoon Talk
Become a Big fish!
The number 1 forum for online business!
Post topics, ask questions, share your knowledge.
Tycoon Talk is part of Freelancer.com - find skilled workers online at a fraction of the cost.

PHP Forum


You are currently viewing our PHP Forum as a guest. Please register to participate.
Login



Freelance Jobs

Reply
What is exactly is xmlrpc.php?
Old 07-24-2006, 10:24 PM What is exactly is xmlrpc.php?
Webmaster Talker

Posts: 626
Trades: 0
I have been looking through my awstats and I notice that every month I have a bunch of 404 errors. When I look in the list to see if there is anything wrong with my site, I notice that it is usually a bunch of things that people are trying to hack into my site. However, this is the most common file: xmlrpc.php... The url/hiarchy is usually different but someone/something is looking for this file.

Can anyone tell me what this file is?
jim.thornton is offline
Reply With Quote
View Public Profile
 
 
Register now for full access!
Old 07-25-2006, 07:44 AM Re: What is exactly is xmlrpc.php?
ibbo's Avatar
Super Spam Talker

Posts: 880
Location: Leeds UK
Trades: 0
It is a common file in forum software that is exploitable. (well in older none patched versions).

You can gain access to the directory that this script resides in (if i remember correctly) whcih then allows the would be attacker to do all sort of bad things.

Quite simply do not rely on 3rd party apps without checking them vigorously first.

"I would be supprised if no-one with a php website has not found requests for this file anywhere"

Ibbo
__________________

Please login or register to view this content. Registration is FREE

Please login or register to view this content. Registration is FREE

Please login or register to view this content. Registration is FREE

Please login or register to view this content. Registration is FREE

Linux user #349545 :
(GNU/Linux)iD8DBQBAzWjX+MZAIjBWXGURAmflAKCntuBbuKCWenpm XoA7LNydllVQOwCf

Last edited by ibbo; 07-25-2006 at 09:00 AM..
ibbo is offline
Reply With Quote
View Public Profile Visit ibbo's homepage!
 
Old 07-25-2006, 09:49 AM Re: What is exactly is xmlrpc.php?
Webmaster Talker

Posts: 626
Trades: 0
Thanks. I don't run any forums so I guess I have nothing to worry about there. But, from now on if I am going to use any 3rd party software I'll post and ask for bugs/exploits first.

Thanks for the tip!
jim.thornton is offline
Reply With Quote
View Public Profile
 
Reply     « Reply to What is exactly is xmlrpc.php?
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML



Page generated in 0.31022 seconds with 12 queries