Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Page 2 of 2 FirstFirst 1 2
Results 16 to 25 of 25
  1. #16
    Member
    Join Date
    Sep 2003
    Posts
    68

    Default

    is this fixed in the latest stable version ?

  2. #17
    Member casey's Avatar
    Join Date
    Jan 2003
    Location
    If there is trouble, it will find me
    Posts
    2,336

    Default

    Originally posted by WCW Fan
    is this fixed in the latest stable version ?
    No cpanel servers should be vulnerable to this anymore. Cpanel themselves hacked those that were in order to patch them.

  3. #18
    Member
    Join Date
    Aug 2001
    Posts
    421
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    Originally posted by Domenico
    EDIT: this is not about the 'lost password' hack! Read carefully...
    But it is old news. This exploit was posted and patched along with the "lost password" hack.

  4. #19
    Member
    Join Date
    Dec 2003
    Posts
    21

    Default

    This has been patched in latest forced update
    Does it take too much effort to refer to the "latest update" by its number? There are THREE versions EDGE, RELEASE and STABLE, each with numbers that appear in the upper right hand corner. It would be a lot simpler to use them rather than having to poke around to find out what the LATEST is as of when.

  5. #20
    zex
    zex is offline
    Member zex's Avatar
    Join Date
    Aug 2001
    Posts
    99

    Default

    I think that people on this forum deserve that cpanel officaly say to us wich version are secure and wich are not.

    I had before day's rootkit and I spend hell-weekend just becouse I didn't know that there is autorootkit for cpanel.
    I think that in any case custumers have right to know about all problems, If we continue to keep things just for our selves, and not share information we may just forgot about security and give keys of our servers to people who know better than us wich version are vurnelable or wich software have bugs.
    Signed,
    Dzevad Hadzic

  6. #21
    cPanel Staff cpanelnick's Avatar
    Join Date
    Feb 2003
    Location
    Houston, TX
    Posts
    4,514

    Default

    Originally posted by zex
    I think that people on this forum deserve that cpanel officaly say to us wich version are secure and wich are not.

    I had before day's rootkit and I spend hell-weekend just becouse I didn't know that there is autorootkit for cpanel.
    I think that in any case custumers have right to know about all problems, If we continue to keep things just for our selves, and not share information we may just forgot about security and give keys of our servers to people who know better than us wich version are vurnelable or wich software have bugs.
    8.6.0build31 though 9.1.0build40 are the builds with the security problems.

  7. #22
    zex
    zex is offline
    Member zex's Avatar
    Join Date
    Aug 2001
    Posts
    99

    Default

    Thank you for fast replay. This is very helpful.
    Signed,
    Dzevad Hadzic

  8. #23
    Member trakwebster's Avatar
    Join Date
    Jan 2003
    Posts
    145

    Default

    Originally posted by zex
    ... <snip> ... didn't know that there is autorootkit for cpanel ... <snip> ...
    Uh, autorootkit?

    What is autorootkit?
    -- Arthur Cronos from Voltos
    =================================================
    The Bloggard, Un Hombre Muy Blogisto -- http://www.bloggard.com
    Your loch ness monster, your yeti, your bigfoot. Bah! I've seen worse.
    =================================================

  9. #24
    Member
    Join Date
    Jun 2004
    Posts
    9

    Exclamation

    Quote Originally Posted by thaphantom
    1) Yes this is fixed
    2) Are you so damn stupid that you are going to post HOW TO DO A HACK INTO A PUBLIC FORUM!?!?!?!? /me shakes head... another dumbass
    Please don't be a dumb ass!
    Security through obscurity isn't.

    The information is public domain already. And telling Admins how to test to see if their own system in vulerable - is an important way for them to check the vendor has fixed the problem.


    Dasher

  10. #25
    Member
    Join Date
    Jun 2004
    Posts
    9

    Default

    Quote Originally Posted by thaphantom
    #1 you are about as dense as them. LOOK AT THE DATE ON THIS
    #2 Try to think before posting, it cant be that hard to do
    Is there a date on a principle?
    I was referring to the general principle of full disclosure.

    Your rule #2 applies...

Similar Threads & Tags
Similar threads

  1. vulnerability of cPanel?
    By Mark5 in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 02-09-2009, 01:35 PM
  2. New cpanel vulnerability?
    By BianchiDude in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 08-08-2006, 03:19 PM
  3. AWStats Remote Command Execution Vulnerability (configdir)
    By bornonline in forum cPanel and WHM Discussions
    Replies: 3
    Last Post: 01-18-2005, 10:53 AM
  4. What is the command to restart cpanel via the command line?
    By AbeFroman in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 07-29-2004, 04:24 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube