server security

hi.. just dropping some questions..

some of my client say that they can telnet / ssh without permission from cPanel whm. by using cgitelnet or shell.php (some php script) and they can run a background proccess or if they lucky they can log into root access?

any1 have any comment ?

 

 

 

 

Top