Forum Moderators: phranque

Message Too Old, No Replies

chmod 777 and open_basedir restriction

security and chmod 777

         

Skyshine

10:22 am on Nov 16, 2005 (gmt 0)



Hi all

Can someone please explain to me exactly what the security issues are around having files/folders that are chmod 777.

As I understand it this means that a file/folder is fully accesssable, changable by anyone with access to that operating system, but not to the web in general, so why is it a security risk.

In my particular case I am on a shared server so I realise there is a risk, but the shared server does have an open_basedir restriction to prevent other users from accessing files they shouldn't. How safe is this? And if it is not safe then why? I don't understand how someone could gain access to the files in these circumstances.

Many thanks
Sky