MS08_067smb exploit penetration testing

Target Server: Windows XP in English

Penetration Testing machine: KaLi

Preface:

MS08-067 vulnerability affects all Windows systems except 2008 Core Windows Server, including: 2003 / Vista / all versions of Windows 2000 / XP / Server Server 2008, and even includes the testing phase of Windows 7Pro-Beta.

In this experiment the target server system

image

1, view the target and local IP, if real, then we need to scan Oh, here we have the direct use of.

image

image

2, start MSFConsole, search and use MS06_067 module

image

3, the corresponding configuration parameters, and running the target drone address configuration, and then run or exploit

image

4, hashdump get xp user hash value, and then use the built-kali password cracking tool ophcrack

image

Ophcrack use tools to crack, crack the password is 123456

image

5, open the target in just meterpreter in Remote Desktop Services

image

6, the target for Remote Desktop Connection

image

7, the end of penetration testing


Reading and fitness there is always a way

Guess you like

Origin www.cnblogs.com/Renqy/p/12660382.html