Prev Previous Post   Next Post Next
Old 5th November 2008, 01:13
bernholdt bernholdt is offline
Senior Member
Join Date: Jun 2007
Posts: 156
Thanks: 47
Thanked 13 Times in 11 Posts
Exclamation Security issue

I was cleaning up my in my uploader directory on a site today and i found a script called r57shell uploaded by some user a while ago Im just wondering how concerned i should be. The script seems to be a hacker tool used to extract all kind info from server.

The server is running fine and the person who uploaded it dosent seem to have messed up annything. Im just worried tht he/she has extracted all my users usernames and pw, and automaticly emailed them somewere.

I dont allow shell access on any sites im running, but i have safemode turned off.

I couldnt help be a little courious so i downloaded it and tested it on a local test server i have here at home, and i noticed that you can see all useraccounts and search for all .htpassword etc etc.

Is the Perfect server guide and Ispconfig setting secure enough to prevent these kinda scripts ??
Reply With Quote
Sponsored Links


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
just dl'd + installed ubuntu 8 server... concerned about recent ssh security issue zskillz Installation/Configuration 4 27th December 2009 16:22
Serious security issue in proftpd/mysql/Debian-Howto marcusr HOWTO-Related Questions 7 1st September 2008 18:03
Security issue / Upgrade BIND henrygud Server Operation 1 23rd July 2008 12:30
A big security issue in FTP server freesqrt Installation/Configuration 8 22nd June 2008 14:45
Security Issue in Mailserver after ISPConfig installation bogdinator Installation/Configuration 8 31st October 2006 13:00

All times are GMT +2. The time now is 06:44.

Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.