EG Information

Main Index
EG Manual
Disclaimer
Legal Information
Hall of Fame
Hall of Shame
Member Rankings
Members List
Meet the Staff

Training Missions

Read Me First New
Basic Skills
Realistic Scenarios
Cryptography
Software Cracking
Linux ELF Binary Cracking
Logical Thinking
Programming
Patching
Steganography
Deface This Wall
/dev/null
/dev/urandom

Knowledge Bank

Discussion Forums
Enigma Chat New
RSS Feeds RSS
Articles / Tutorials
Videos
Online EG MP3 Player Radio
Enigma Zine
Downloads
Tools New

Code Resources

Submit Code
Ajax
ASM
Bash
C
CPP
Csharp
Delphi
Haskell
Java
Javascript
Jython
Lisp
mIRC
MySQL
Perl
PHP
Python
QBASIC
VisualBasic

Hakipedia: An open collaborative for all your information security needs.

The Urinal

Click Here To Vote For EG!

Has Enigma Group Helped You? Then Help Us By Advertising For Us. Place One Of The Following Images On Your Site.

enigma group

enigma group

enigma group

enigma group

Enigma Group's Articles


CPanel Shell Flaws - Submitted By: Hybridtheory 2008-08-19 11:45:52
First off, you should know that CPanel has alot of flaws in it's shells.
 
for starters, when you make an account in cpanel (with WHM likley) you essentially automatically give it shell access (which is default), now, some providers allow shell access, and they would usually just select the box for shell access, and there ya go. 'We comply with our offers' and you have shell access like they said.
 
What they don't know..
what they don't know is that (by default) cpanel grants what we call a 'normal shell' environment, most hosting provides simply do not know where you can change what type of shell it gives you, and, since its cpanel, assume its secure.
 
for cpanel there are 2 types of shells:
'normal shell' environment
and what we call a 'jail shell'
 
Both of these (for cpanel) are essentially swiss cheese.
 
Like we said before, the default is a normal shell, well heres how you would use it..:
(using PuTTy or other ssh client)
ssh to
host: mydomain.com
login: my cpanel user login
pass: (when asked in the shell) my cpanel password
you will then get a shell bashline, now, this is a normal shell environment, like we said before, in this normal shell environment you have pretty much access to EVERYTHING (except shadow)
 
so lets try the following..
cd /
cd Home/
ls
 
as you can see it now has listed all the folders in the /home directory, here it lists all the usernames, and in those folders, the files for every account (website) on the server!, you can also cd / and then ls, move around, have fun.
 
jailshell is a bit different, jailshell will let you move pretty much most places but does not list all those folders (except yours) in /home/ and also dis-allows access to certain stuff, but still, you can get to alot, the good part is, like i said, most providers who use cpanel don't know how to change the normal shell to a jail shell (if they know you could even change it)
 
so, if you have webhosting with cpanel and they gave you shell access, give this a try.

Return to Web Hacking category list

 

Who's Online

487 Guests, 100 Users
ckryptix, TheRetech, Diznablo, Nicid1, Ios, viper0i0, rabbidmind, Nasrudin, CollapsingWalls, mehtaparag, bitstrike, jnony, C, Nusquam-Redono-Sapientia, bazcrown, saifulfaizan, The End, Ultraminor, psychomarine, st3alth, themastersinner, pgmrlink, login, lionaneesh, ishkur88, mahraja, Mac, chekifr, gandalf88, Vap0r, t0ast, tantrum6226, BnE, Distorted, Psiber_Syn, Ausome1, invas10n, oldgoat, freedaysbecumei, BinaryShinigami, Rex_Mundi, Red_beard, Strobeflux, s0m3nak3dguy, Descent, teehee, machupicchu, Genetix, Anandarl, NotMyOwn, thegamerdude, Godzila, popo12341234, RedEvolution, velocity_b, myne17, teto111, aVoid, Central-Gsm, 1101, JackalReborn, InjectioN, h4lted, c0re, DisPater, markt4death, splatta, Jackowacko, saint556, Pyron2312, Azerion, howsens, white.hat.gone.bad, vazzilly, pwunkz, Inverted, QuarterCask, Infernoe11, deskata, cr4ck3rj4ck, Blizer, jasonmax, j0sh, gwenwavor, N4g4c3N, spizeyboy, Network X, Uino59, Jae Cee, ianFDK, saykov, medhaavee, zofy, demonkiller410, Stumble, SaMTHG, kishore, Raze, helasraizam, Venom1019