What is a PHP function?
PHP is the language behind many websites, such as WordPress. A function is a ready-made action in that language. For example, one function can run a command on the server.
Some functions are risky. If a hacker slips bad code onto your site, these functions let the code do real harm. Turning them off makes your site safer.
The list of disabled functions is a setting called disable_functions.
Commonly disabled functions
execpassthrushell_execsystempopenproc_open
These all run commands on the server.
Steps in cPanel
- Log in to your control panel.
- Search for MultiPHP INI Editor and click it.
- Choose Editor Mode. Select your domain from the list.
- Find
disable_functionsin the text. - Copy the old value into a notepad as a backup.
- Add the function names you want to turn off. Separate them with commas, like this:
disable_functions = exec,passthru,shell_exec,system,popen,proc_open
This tells PHP not to allow those six functions.
- Click Save.
- Open your site and test all the main pages and forms.
Your panel may look different. If you do not see this tool, ask Hostvento support. You can open a support ticket.
If something breaks
- Go back to the editor.
- Remove the function that the broken feature needs.
- Save and test again.
The error message often names the missing function. Look at your site's error log to find it.
Quick recap
- Risky PHP functions can run commands on the server.
- Disable them with
disable_functions. - Use the MultiPHP INI Editor in cPanel.
- Keep a copy of the old value.
- Test your site and undo if a feature breaks.