Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

perl/php connect-back backdoor?

From: Ingram <Vail(at)gmx.net>
Date: Sun Jul 27 2003 - 13:19:52 EDT


hi folks,

while pentesting a webserver i found a way to upload cgi/php scripts to /cgi-bin, but as verified with hping all ports except 113 (which needs root privs) are filtered. Means i couldn't use a portbinding backdoor, because all
i got right know is uid www. I think a connect-back perl/php code could made it through this packtfilter, as the outbound rules could be less tight.

Anyone aware of a backdoor like this?

Thx in advantage
Ingram

-- 
+++ GMX - Mail, Messaging & more  
http://www.gmx.net +++

Jetzt ein- oder umsteigen und USB-Speicheruhr als Prämie sichern!
Received on Mon Jul 28 15:59:22 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:40 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library