New cxs v1.21

Changes:

  • Added UID check to ensure updates are only performed by root (UID=0)
  • New –options [D]. This is an experimental option that puts any PHP scripts containing an eval() function that decodes base64 and rot13 data through the (experimental) –decode [file] option during a scan. This will then highlight the decoded result if it hits any regex, fingerprint or virus scan matches
  • Added eval(str_rot13 to –decode [file]
  • Fixed –decode [file] not scanning final decoded result with regex definitions and fingerprints
  • Improvements to –decode [file] detection and processing
  • Modified pure-uploadscript init file to cope with multiple pure-ftpd pids on restart and to stop pure-ftpd more cleanly
  • Exploit regex definitions database additions
  • Exploit fingerprint definitions database additions