Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 2 of 2
  1. #1
    Registered User
    Join Date
    Jul 2006
    Posts
    1

    Default Cpanel Exploit?

    Is there any information on this Russian fellow who seems to have come up with a Cpanel exploit? He apparently can place an inline tag in any html file and not sure what the exploit makes possible.
    I have noticed http://step57.info and http://zbzppbwqmm.biz showing up in the status bar of certain windows. the latter URL really hangs up some windows loading.

  2. #2
    Member
    Join Date
    Apr 2005
    Posts
    318

    Default

    On properly secured server this exploit is useless.

    First of all, disable exec() in php.ini

    Then secure /tmp



    After all, this exploit retrieves md5 password hash which is again useless (IMHO) if it is good password.

    Nothing to worry about, imho.
    http://www.crohoster.com/
    quality hosting services and managed dedicated servers

Similar Threads & Tags
Similar threads

  1. Is this a cpanel or fantastico exploit?
    By BianchiDude in forum cPanel and WHM Discussions
    Replies: 3
    Last Post: 11-17-2008, 02:10 PM
  2. being spammed, looks like Cpanel exploit ?
    By mtindor in forum E-mail Discussions
    Replies: 6
    Last Post: 11-12-2007, 03:49 AM
  3. Cpanel Step57 Exploit
    By jenlepp in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 04-05-2006, 11:11 AM
  4. CPanel Exploit
    By buccaneerob in forum cPanel and WHM Discussions
    Replies: 3
    Last Post: 01-17-2005, 07:52 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube