[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Raq2 Hack



> If the intruder only had privileges of HTTPD, then it looks like he used
> someone's
> file upload script, (use CGI), which defaults to uploading to /tmp.
> 
> Did the shell.pl ever run to completion?

I'm not sure. How would I be able to tell?

thanks