HOW to execute stuff only from "safe_mode_exec_dir" in PHP?

This is a discussion on HOW to execute stuff only from "safe_mode_exec_dir" in PHP? within the PHP General forums, part of the PHP Programming Forums category; Hi, I have the following in php.ini: safe_mode = 1 safe_mode_exec_dir = "D://TEST" This way I can execute ...


Go Back   Usenet Forums > PHP Programming Forums > PHP General

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 11-27-2007
namemattersnot@msn.com
 
Posts: n/a
Default HOW to execute stuff only from "safe_mode_exec_dir" in PHP?

Hi,

I have the following in php.ini:

safe_mode = 1
safe_mode_exec_dir = "D://TEST"

This way I can execute files located in TEST.

However, running the following code bypasses that directory and runs
stuff from other locations:

$runCommand = "C:\\WINDOWS\\system32\\shutdown.exe -t:30";
$WshShell = new COM("WScript.Shell");
$output = $WshShell->Exec($runCommand)->StdOut->ReadAll;

How do I prevent people from executing ANYTHING unless it is located
in safe_mode_exec_dir?

Thanks in advance.
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 07:07 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0