Jump to content

Question


Willx

Recommended Posts

It depends on what you do with it. For example, shell_exec($_REQUEST['command']) is an invitation for everyone to take over your box. With proper input validation, or better yet, hardcoded commands and arguments based on user input, you should be safe. Just remember to never trust user input.

 

See http://php.net/shell_exec for more info.

Link to comment
Share on other sites

Yeah cause I was telling this friend that he needs to have that on to have WHMCS status page to work.. Hes like no because it will let people hack into the box or exploit it.. So just trying to find a good way to eas his mind..

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use & Guidelines and understand your posts will initially be pre-moderated