Re: Buffer overflow attack on solr seen in the wild

2008-08-21 Thread Alexander Ramos Jardim
Yes, it is an SQL injection in fact. 2008/8/21 Mike Klaas <[EMAIL PROTECTED]> > Hi Jim, > > Looks like a sql injection attack that is automatically entered into search > forms. Solr should not be affected, but it could affect you if you insert > the raw/unescaped query into a sql database (for l

Re: Buffer overflow attack on solr seen in the wild

2008-08-21 Thread Mike Klaas
Hi Jim, Looks like a sql injection attack that is automatically entered into search forms. Solr should not be affected, but it could affect you if you insert the raw/unescaped query into a sql database (for logging, etc.). -Mike On 21-Aug-08, at 3:30 PM, Jim Hurst wrote: Hey folks, I