Work at SourceForge, help us to make it a better place! We have an immediate need for a Support Technician in our San Francisco or Denver office.

Close

Security issue with Awstats CGI

2011-11-06
2012-10-11
  • Gilad Tiram
    Gilad Tiram
    2011-11-06

    Today I reviewed my AWstats reports and found strange references from some
    websites I am not in contact with. Upon investigation I found that these
    websites use 'iframe' with size 1X1 or in the case of another website 'img'
    with size 1X1 and create reference to Awstat CGI script of some of my my
    websites.

    Here is how it looks like:

    From: http://djstools.com/Microfono/Behringer/C345/0_Behringer:
    My website: kamera10.de

    <iframe width="1px" height="1px" style="display: none" src="[http://dis.jp.as.criteo.com/dis/dis.aspx?c=2&amp;p=2921&amp;cb=9f279766-f406 -413e-942d-1bdfbe559e42&amp;ref=http://kamera10.de/cgi-bin/awstats/awstats.pl?fram ename=mainright](http://dis.jp.as.criteo.com/dis/dis.aspx?c=2&amp;p=2921&amp;cb=9f2797 66-f406-413e-942d-1bdfbe559e42&amp;ref=http://kamera10.de/cgi- bin/awstats/awstats.pl?framename=mainright)"/> From: [http://djstools.com/Chitarre/Ibanez/C397/0_Ibanez](http://djstools.com/ Chitarre/Ibanez/C397/0_Ibanez) My website: [http://hdtv1080p.de](http://hdtv1080p.de) <iframe width="1px" height="1px" style="display: none" src="[http://dis.jp.as. criteo.com/dis/dis.aspx?c=2&amp;p=2921&amp;cb=f60d29f2-fd40-4433-8c44-b5b836e8db2e&amp;ref =http://hdtv1080p.de/cgi-bin/awstats/awstats.pl?framename=mainright](http://di s.jp.as.criteo.com/dis/dis.aspx?c=2&amp;p=2921&amp;cb=f60d29f2-fd40-4433-8c44-b5b836e8 db2e&amp;ref=http://hdtv1080p.de/cgi- bin/awstats/awstats.pl?framename=mainright)"/> From: [http://id6957.belweb.by/](http://id6957.belweb.by/) My website: hdtv1080p.de Does someone here know or can explain what are these scripts try to do?