!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/usr/share/doc/selinux-policy-2.4.6/html/   drwxr-xr-x
Free 50.93 GB of 127.8 GB (39.85%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     kernel_mls.html (16.33 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Security Enhanced Linux Reference Policy

Layer: kernel

Module: mls

Description:

This module contains interfaces for handling multilevel security. The interfaces allow the specified subjects and objects to be allowed certain privileges in the MLS rules.

This module is required to be included in all policies.

Interfaces:

mls_colormap_read_all_levels( domain )
Summary

Make specified domain MLS trusted for reading from X colormaps at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_colormap_write_all_levels( domain )
Summary

Make specified domain MLS trusted for writing to X colormaps at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_context_translate_all_levels( domain )
Summary

Make specified domain MLS trusted for translating contexts at all levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_fd_share_all_levels( domain )
Summary

Make the file descriptors from the specifed domain inheritable by all levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_fd_use_all_levels( domain )
Summary

Make the specified domain trusted to inherit and use file descriptors from all levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_file_downgrade( domain )
Summary

Make specified domain MLS trusted for lowering the level of files.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_file_read_up( domain )
Summary

Make specified domain MLS trusted for reading from files at higher levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_file_upgrade( domain )
Summary

Make specified domain MLS trusted for raising the level of files.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_file_writable_within_range( domain )
Summary

Make specified domain trusted to be written to within its MLS range. The subject's MLS range must be a proper subset of the object's MLS range.

Parameters
Parameter:Description:Optional:
domain

Object domain granting ranged access.

No
mls_file_write_down( domain )
Summary

Make specified domain MLS trusted for writing to files at lower levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_net_receive_all_levels( domain )
Summary

Make specified domain MLS trusted for receiving network data from network interfaces or hosts at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_process_read_up( domain )
Summary

Make specified domain MLS trusted for reading from processes at higher levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_process_set_level( domain )
Summary

Make specified domain MLS trusted for setting the level of processes it executes.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_process_write_down( domain )
Summary

Make specified domain MLS trusted for writing to processes at lower levels.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_rangetrans_source( domain )
Summary

Allow the specified domain to do a MLS range transition that changes the current level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_rangetrans_target( domain )
Summary

Make specified domain a target domain for MLS range transitions that change the current level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_socket_read_all_levels( domain )
Summary

Make specified domain MLS trusted for reading from sockets at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_socket_read_to_clearance( domain )
Summary

Make specified domain MLS trusted for reading from sockets at any level that is dominated by the process clearance.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_socket_write_all_levels( domain )
Summary

Make specified domain MLS trusted for writing to sockets at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_socket_write_to_clearance( domain )
Summary

Make specified domain MLS trusted for writing to sockets at any level that is dominated by the process clearance.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_sysvipc_read_all_levels( domain )
Summary

Make specified domain MLS trusted for reading from System V IPC objects at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_sysvipc_write_all_levels( domain )
Summary

Make specified domain MLS trusted for writing to System V IPC objects at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_trusted_object( domain )
Summary

Make specified object MLS trusted.

Description

Make specified object MLS trusted. This allows all levels to read and write the object.

This currently only applies to filesystem objects, for example, files and directories.

Parameters
Parameter:Description:Optional:
domain

The type of the object.

No
mls_xwin_read_all_levels( domain )
Summary

Make specified domain MLS trusted for reading from X objects at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
mls_xwin_write_all_levels( domain )
Summary

Make specified domain MLS trusted for writing to X objects at any level.

Parameters
Parameter:Description:Optional:
domain

Domain allowed access.

No
Return

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0133 ]--