Author Topic: suphp not working ... security issue  (Read 6166 times)

0 Members and 1 Guest are viewing this topic.

Offline
*
suphp not working ... security issue
« on: February 03, 2017, 05:19:12 AM »
Hi Guys

Not sure if i broke something on our server but as a test i uploaded a nasty script i found on a windows VPS. (milw0rm) Its a shell / file manager. Interesting thing is that it allows the user to browse the entire file system of the server. IE can see the etc/

This is very bad!!

Any ideas what to check for or if this happens on other peoples server?

Offline
*
Re: suphp not working ... security issue
« Reply #1 on: February 24, 2017, 09:45:57 AM »
CWP cannot run in windows server. Maybe you are confused.

Enable antivirus into CWP and mod_security and disable php_functions: eval(), exec() for client accounts.
It's funny that: centos-webpanel.com has cPanel and not CWP installed.