[thelist] DJC -- Major Security Hole in Evolt.org?

Anthony Baratta Anthony at Baratta.com
Wed Dec 5 23:33:24 CST 2001


Are you sure you are not looking at the site as user "nobody". I've written 
scripts that run pkill and ps and capture the output for a web page. The 
caveat is that they run as the web server user which is usually nobody.
---
Anthony Baratta
President
Keyboard Jockeys

"Conformity is the refuge of the unimaginative."





More information about the thelist mailing list