标签 ‘Exploit’ 下的日志
MS08-067 Exploit for CN 2k/xp/2003 bypass version
Token Kidnapping Windows 2008 PoC exploit
鬼仔注:发过 MS Windows 2003 Token Kidnapping Local Exploit PoC ,这次是2008.
Now it's time for Windows 2008 exploit (it should work on Windows 2003 too)
You will see that the super secure IIS 7 can be owned, too weak by default :)
You can find the PoC exploit here http://www.argeniss.com/research/Churrasco2.zip
Enjoy.
Nuke ET < = 3.4 (fckeditor) Remote Arbitrary File Upload Exploit
Vulnerable:
Tru-Zone NukeET 3.4
FCKeditor FCKeditor 2.4.3
FCKeditor FCKeditor 2.0 rc3
FCKeditor FCKeditor 2.0 RC2
FCKeditor FCKeditor 2.3 beta
FCKeditor FCKeditor 2.2
ms08-066
MS08-066 AFD.sys Local Privilege Escalation Exploit (POC)
文章作者:Eros412
信息来源:邪恶八进制信息安全团队(www.eviloctal.com)
MS Bulletin : http://www.microsoft.com/technet/security/Bulletin/MS08-066.mspx
**********计算IoControlCode过程**********
MS Windows XP/2003 AFD.sys Privilege Escalation Exploit (K-plugin)
Hi,
I have just uploaded a k-plugin for Kartoffel, which exploits a flaw
patched in the recent MS08-066 bulletin.
http://kartoffel.reversemode.com/downloads.php
backup: http://milw0rm.com/sploits/2008-afd_plugin.zip
MS Windows 2003 Token Kidnapping Local Exploit PoC
鬼仔:提权很好用,直接system。文章末尾贴个TR那里的测试图。
编译好的: http://www.blogjava.net/Files/baicker/Churrasco.rar
(via 009
)
From:http://nomoreroot.blogspot.com/2008/10/windows-2003-poc-exploit-for-token.html
It has been a long time since Token Kidnapping presentation ( http://www.argeniss.com/research/TokenKidnapping.pdf
)
was published so I decided to release a PoC exploit for Win2k3 that alows to execute code under SYSTEM account.