搜索
查看: 523|回复: 0

shellshocker-POCs [http dhcp SSH etc..]

[复制链接]

1839

主题

2255

帖子

1万

积分

管理员

Rank: 9Rank: 9Rank: 9

积分
11913
发表于 2014-9-29 09:58:28 | 显示全部楼层 |阅读模式
Collection of Proof of Concepts and Potential Targets for #ShellShocker

Command Line (*nix Bash and Windows via Cygwin)

env x='() { :;}; echo vulnerable' bash -c 'echo hello'
IBM z/OS - http://mainframed767.tumblr.com/ ... in-bash-on-z-os-and
HTTP

Metasploit Exploit Module Apache MOD_CGI - https://github.com/rapid7/metasp ... gi_bash_env_exec.rb
HTTP Header Polution by @irsdl - http://pastebin.com/QNkf7dYS
HTTP CGI-BIN - http://pastebin.com/166f8Rjx
cPanel - http://blog.sucuri.net/2014/09/b ... -are-high-risk.html
F5 - https://twitter.com/securifybv/status/515035044294172673
https://twitter.com/securifybv/status/515035044294172673/photo/1
https://twitter.com/avalidnerd/status/515056463589675008
https://twitter.com/avalidnerd/status/515056463589675008/photo/1
Invisiblethreat.ca - https://www.invisiblethreat.ca/2014/09/cve-2014-6271/
DHCP

Trusted sec exploitation via Tftpd32 - https://www.trustedsec.com/septe ... -rce-proof-concept/
Metasploit Exploit Module - https://github.com/rapid7/metasp ... bash_environment.rb
Metasploit Auxiliary Module - https://github.com/rapid7/metasp ... iary/server/dhcp.rb
Perl Script - http://pastebin.com/S1WVzTv9
SSH

Stack Overflow - http://unix.stackexchange.com/qu ... -exploited-over-ssh
SSH ForcedCommand - https://twitter.com/JZdziarski/status/515205581226123264
https://twitter.com/JZdziarski/status/515205581226123264/photo/1
OSX

Priv Escalation via VMware Fusion - https://github.com/rapid7/metasp ... sh_function_root.rb
SIP

SIP Proxies: https://github.com/zaf/sipshock
Qmail

Tweet from @ymzkei5 - http://twitter.com/ymzkei5/status/515328039765307392
http://twitpic.com/ec3615
http://twitpic.com/ec361o
TMNT

https://twitter.com/SynAckPwn/status/514961810320293888/photo/1

via https://github.com/mubix/shellshocker-pocs
过段时间可能会取消签到功能了
您需要登录后才可以回帖 登录 | Join BUC

本版积分规则

Powered by Discuz!

© 2012-2015 Baiker Union of China.

快速回复 返回顶部 返回列表