cPanel OpenBaseDir Bypass

Risk: Medium
Local: Yes
Remote: Yes

CVSS Base Score: 5.1/10
Impact Subscore: 6.4/10
Exploitability Subscore: 4.9/10
Exploit range: Remote
Attack complexity: High
Authentication: No required
Confidentiality impact: Partial
Integrity impact: Partial
Availability impact: Partial

Hey when you try to run a phpshell and open BaseDir is on you will se that: Open base dir: /home/***/:/usr/lib/php:/usr/local/lib/php:/tmp Okey.. now run the phpshell with user like that: http://server.***.com/~***/phpshell.php you will see that: Open base dir: OFF (not secure) --------------------------------- Found By: PHP Emperor Greets: Dr.ExE , Pro Hacker's

