File Permissions?

[email protected] (Tedd Sperling)
Newsgroups php.general
Message-ID <[email protected]>
Hi Gang:

We had an incident happen at the college where I teach — the IT guy said:

> After further inquiry, it appears a bad guy used a php vulnerability injection over http to enter into a folder on CITW.   This was made possible because the permissions were misconfigured (execute was set to 755 instead of normal 644). 


My understanding of permissions is that 755 is normally thought of as secure — is that not true?

My thanks in advance for any clarification or advice.

Thank you,

tedd
_______________
tedd sperling
[email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.