Sammu’s Weblog

TVM Totally Exposed????

Posted by: sammu on: January 22, 2009

Lately  i was checking some of the sites hosted here in Maldives for some security. what i ve noticed is that most of the sites hosted here in Maldives are under threat.one of my very favorite sites are TVM or Television Maldives website.

because it changes a lot and somehow the sites made by TVM exists for a short period and completely get lost.i dont really know why..but all i know is thers something weird going on here.maybe the site is vulenerable to hackers or there has been some corruption behind this. lets not talk bout the corruption here anyways :)

tonight i just enterd the URL and was surprised to see the site offline. so i did some crawling  and surprised to see most of the files again totally exposed. there are possible sensitive files, broken links and Apache Mod_SSL SSL_Util_UUEncode_Binary Stack Buffer Overflow Vulnerability.

php info file, admin login panel and php.ini files can be seen easily

http://tvm.gov.mv/beta/phpinfo.php
http://tvm.gov.mv:80/php.ini
http://tvm.gov.mv:80/beta/admin/

the site is currently down as i ve mentioned before.

Tags: ,

Leave a Reply