OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Guy Cohen (rcs_at_rshell.org)
Date: Tue Oct 01 2002 - 18:48:18 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    suexec suppose to guard you from unprivileged programs (among other things),
    by letting you configure a safe_path of execution. However, if a user is
    able to link, she can create a link to files outside of the safe_path and
    then execute them.
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html