[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] All folders visable on whole server



> > I just found out that it is possible for a "normal" user on a RaQ3 to
> access
> > all system directories using "AdminPro" (www.craigrichards.com).
> >
> > Also I haven´t tried out if you can read those files, I think that
> it´s not
> > so good if a user can view the list of all domains hosted on the RaQ,
> so I
> > wanted to ask you what is your opinion on that topic? Is there a
> possibility
> > to disallow that on a server?
> >
> > steve
> >
> [Curtis Ross]  I just downloaded and tried out that 'utility'.
> This thing is just downright scary! Let me know if you find out any
> solutions.

Just found out that this thing also works on virtualave-servers. If you
don´t believe me, check this out:
http://server2043.virtualave.net/abdulabdul/AdminPro/adminpro.cgi

steve