Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Results 1 to 3 of 3
  1. #1
    Member
    Join Date
    Jan 2005
    Posts
    14

    Default important (mod_phpsuexec)

    Dears,

    that mod_php is installed by default on cPanel installations making all cPanel default installations to be vulnerable. The flaws are outlined below:

    When mod_php is enabled, all PHP scripts are executed as the same user as the web server, the "nobody" user. This allows all users to execute arbitrary code as a common user simply by creating a PHP script. This is the default behavior of cPanel installations

    now, is there any ways or suggetions to fix this vulnerability ??

    best ragards

    ــــــــــــــــــــــــــــــــــ
    Prof
    cLeaR your Minde

  2. #2
    Member rs-freddo's Avatar
    Join Date
    May 2003
    Location
    Australia
    Posts
    819
    cPanel/Enkompass Access Level

    Root Administrator

    Talking

    buildapache with phpsuexec - it's in WHM.
    Michael

  3. #3
    Member
    Join Date
    Mar 2004
    Location
    Ayr, North Queensland, Australia
    Posts
    328

    Default

    its not really a vulnerability just disable the system, exec, and those sort of functions in php.ini.

    Regards,
    Brent

    Talk at cPanel IRC
    cPanel IRC Logs (Publicly available) @ My Site

Similar Threads & Tags
Similar threads

  1. urgent and very important
    By ullalla in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 01-16-2008, 03:27 PM
  2. Important
    By moalim in forum cPanel and WHM Discussions
    Replies: 5
    Last Post: 07-26-2003, 12:05 PM
  3. !!very Important To All!!
    By silentcircuit in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 06-16-2003, 10:57 AM
  4. very Very important
    By komal in forum cPanel and WHM Discussions
    Replies: 9
    Last Post: 09-12-2002, 10:43 AM
  5. IMPORTANT!
    By bdraco in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 08-14-2001, 07:48 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube