Manual utilization and reinforcement of vsftp2.3.4 and samba3.x

1. Manual exploitation of SAMBA usermap script vulnerability

Samba connects to the target machine with the vulnerability.
insert image description here
Set up the monitor module. And set the payload to run after setting parameters for cmd/unix/reverse
insert image description here
, and then use sambaclient to connect to the target machine.
insert image description here

2. Manual use of vsftpd2.3.4

insert image description here
insert image description here

smbusermap reinforcement method:

vim /etc/samba/smb.conf
注释:username map script = /etc/samba/scripts/mapusers.sh

vsftpd reinforcement method;

vim /etc/vsftpd.conf
将local_enable = YES改为local_enable=NO

Guess you like

Origin blog.csdn.net/qq_27180763/article/details/123682051