Activity Stream
48,167 MEMBERS
6986 ONLINE
besthostingforums On YouTube Subscribe to our Newsletter besthostingforums On Twitter besthostingforums On Facebook besthostingforums On facebook groups

Results 1 to 5 of 5
  1.     
    #1
    Respected Developer
    Website's:
    X4B.org

    Default HyperVM

    Have you guys allowed access to your clients to hyperVM yet?

    I was thinking it might be ok after reading this thread: http://forum.lxlabs.com/index.php?t=...12560&start=0&

    Thoughts?
    SplitIce Reviewed by SplitIce on . HyperVM Have you guys allowed access to your clients to hyperVM yet? I was thinking it might be ok after reading this thread: http://forum.lxlabs.com/index.php?t=msg&th=12560&start=0& Thoughts? Rating: 5

  2.   Sponsored Links

  3.     
    #2
    Respected Developer
    Website's:
    X4B.org
    no one has any details?

  4.     
    #3
    Member
    they say its patched....but ask your host weather they have patched or not ?
    Coding Horror Fan
    I don't read PM's frequently .

  5.     
    #4
    Member
    Hai,

    As most of you probably know, Kloxo / LXAdmin has a lot of vulns and most of them can be exploited via a symlink attack.

    I doubt they patched HyperVM. After all, I can confirm there is still a couple of 0-days in Kloxo / LXAdmin. I'm not sure for HyperVM...

    Anyway, here is a way to stop those symlinks attacks. Chmod /bin/ln to 700, it means only root will be able to use symlink. I'm not gonna explain what "chmod" is but I believe most of you know it already. For those who don't know, check this out:
    http://en.wikipedia.org/wiki/Chmod

    Also, there is a php symlink so you will need to disable "symlink" function in your php.ini

    --Krun!x

  6.     
    #5
    Respected Developer
    Website's:
    X4B.org
    ok well if its only symlink attacks we should be fine since the only filemanager provided by hypervm is that of the clients own VPS. But yes I will look into doing this, as far as I can find out the sql injections have been fixed and same with the lfi's.

    Theres no 0-days you know of Krun!x?

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. HyperVM Doubts please help me!
    By mastergun in forum Webmaster Resources
    Replies: 1
    Last Post: 1st Jul 2012, 05:39 AM
  2. Problem adding another VPS on HyperVM
    By Teks0427 in forum Server Management
    Replies: 7
    Last Post: 29th Feb 2012, 12:40 AM
  3. HyperVM XEN Issue
    By Joseph in forum Server Management
    Replies: 4
    Last Post: 19th Jan 2012, 07:00 AM
  4. HyperVM XEN Issue
    By Joseph in forum Technical Help Desk Support
    Replies: 0
    Last Post: 14th Jan 2012, 06:53 PM
  5. Hypervm > Kloxo
    By desiboy in forum Server Management
    Replies: 7
    Last Post: 16th Jul 2009, 12:20 PM

Tags for this Thread

BE SOCIAL