Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Results 1 to 2 of 2
  1. #1
    Member
    Join Date
    Mar 2006
    Location
    Turkey
    Posts
    149

    Default Is SuPHP really secure?

    It is always said that SuPHP is secure. But i don't know why.

    SuPHP is using php as cgi. So then it is possible for everyone to overwrite every value in php.ini.

    For example i set open_basedir for users and i don't want them to load any php extensions for security. But with SuPHP (php as cgi) anyone can put a local php.ini on his web page directory and bypass my security settings. Can load custom extensions and may abuse my server.

    So where is the SuPHP security?

  2. #2
    Member
    Join Date
    Apr 2008
    Posts
    35

    Default

    any update ?

Similar Threads & Tags
Similar threads

  1. SSL being installed on www.secure.* instead of secure.*
    By markjohnson in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 01-19-2011, 12:24 PM
  2. secure smtp and secure POP
    By shaun_s in forum E-mail Discussions
    Replies: 0
    Last Post: 12-11-2007, 09:03 AM
  3. WHM secure and non secure items
    By Frankc in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 08-09-2007, 09:07 AM
  4. secure and non-secure access to webmail through the same URL?
    By danimal in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 08-21-2006, 03:11 PM
  5. Secure/Non-Secure pop-up still there
    By Omar in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 10-03-2002, 07:40 PM
Tags for this Thread
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube