perl/php connect-back backdoor?
hi folks,
while pentesting a webserver i found a way to upload cgi/php scripts to
/cgi-bin, but as verified with hping all ports except 113 (which needs root
privs) are filtered. Means i couldn't use a portbinding backdoor, because
all
i got right know is uid www. I think a connect-back perl/php code could
made it through this packtfilter, as the outbound rules could be less tight.
Anyone aware of a backdoor like this?
Thx in advantage
Ingram
--
+++ GMX - Mail, Messaging & more
http://www.gmx.net +++
Jetzt ein- oder umsteigen und USB-Speicheruhr als Prämie sichern!
Received on Mon Jul 28 15:59:22 2003
This archive was generated by hypermail 2.1.8
: Wed Aug 23 2006 - 14:07:40 EDT
|