Re: exec( ) function on winNT

From: Date: Wed, 12 Jul 2000 22:40:56 +0000
Subject: Re: exec( ) function on winNT
References: 1  Groups: php.general 
Request: Send a blank email to php-general+get-6328@lists.php.net to get a copy of this message
In article <000e01bfebb5$042c8e20$839b09ca@anurag.dnsalias.com>, anuragbhalla@id.eth.net ("Anurag Bhalla") wrote: > I want to know if the exec( ) function which runs a command line = > operation > pose any threat to NT security ie is the execution of this function = > banned by win NT > environment.=20 Under Un*x, exec() can execute any program that the user PHP runs as. Presumably that sort of holds true for Windows NT as well. So, if PHP is running as Administrator, exec() would be a significant security problem. If PHP is running as I_USR_machinename, not so much, but some. Frankly, at *some* level of understanding, anything non-trivial in PHP is going to pose some sort of security threat to NT. But then, NT is already a security threat unless there's an expert riding it 24/7 anyway. -- Richard Lynch | If this was worth $$$ to you, buy a CD US Customer Support Director | from one of the artists listed here: Zend Technologies USA | http://www.L-I-E.com/artists.htm http://www.zend.com | (this has nothing to do with Zend, duh!)

« previous php.general (#6328) next »