HOME    FORUMS    MEMBERS    RECENT POSTS    LOG IN  
Баннер 1   Баннер 2

ANTICHAT — форум по информационной безопасности, OSINT и технологиям

ANTICHAT — русскоязычное сообщество по безопасности, OSINT и программированию. Форум ранее работал на доменах antichat.ru, antichat.com и antichat.club, и теперь снова доступен на новом адресе — forum.antichat.xyz.
Форум восстановлен и продолжает развитие: доступны архивные темы, добавляются новые обсуждения и материалы.
⚠️ Старые аккаунты восстановить невозможно — необходимо зарегистрироваться заново.
Вернуться   Форум АНТИЧАТ > БЕЗОПАСНОСТЬ И УЯЗВИМОСТИ > Уязвимости
   
Ответ
 
Опции темы Поиск в этой теме Опции просмотра

  #601  
Старый 11.11.2015, 03:30
foma9999
Новичок
Регистрация: 05.01.2010
Сообщений: 9
Провел на форуме:
13018

Репутация: 0
По умолчанию

Цитата:
Сообщение от KIR@PRO  
KIR@PRO said:

А как вы собираетесь понять, что повысили привилегии, если у вас нет стабильной сессии? Сделайте backconnect и с него дальше пробуйте.
Я не говорю, что из-за этого все ваши проблемы, просто повышение привилегий производится из под шелла, когда используется подготовленный код для выполнения с повышенными правами, но большинство эксплоитов попросту повышают права для процесса из под которого они были запущены (в вашем случае это процесс (один из) веб-сервера, который после вывода данных в браузер, завершится и толку от повышения прав нет, а при постоянном коннекте все ваши последующие команды будут выполняться с повышенными привилегиями (при успешном повышении прав соответственно xD )).
p.s. ваш пост - эталон оформления!
Спасибо!

Все равно ошибка та же...
 
Ответить с цитированием

  #602  
Старый 26.11.2015, 23:13
Filipp
Guest
Сообщений: n/a
Провел на форуме:
98300

Репутация: 31
По умолчанию

[COLOR="rgb(128, 255, 0)"]uname -a:[/COLOR]

Код:
Code:
FreeBSD site.com 8.1-RELEASE FreeBSD 8.1-RELEASE #0: Sun Jul 25 23:33:02 UTC 2010     root@wdc-srv.ispsystem.net:/usr/src/sys/amd64/compile/ISPSYSTEM  amd64


ls -la /boot:

Код:
Code:
total 2004
drwxr-xr-x   7 root  wheel    1024 Sep 19  2010 .
drwxr-xr-x  22 root  wheel     512 Sep  1 00:11 ..
-r--r--r--   1 root  wheel    7647 Jul 19  2010 beastie.4th
-r--r--r--   1 root  wheel    8192 Jul 19  2010 boot
-r--r--r--   1 root  wheel     512 Jul 19  2010 boot0
-r--r--r--   1 root  wheel     512 Jul 19  2010 boot0sio
-r--r--r--   1 root  wheel     512 Jul 19  2010 boot1
-r--r--r--   1 root  wheel    7680 Jul 19  2010 boot2
-r--r--r--   1 root  wheel    1201 Jul 19  2010 cdboot
drwxr-xr-x   2 root  wheel     512 Jul 19  2010 defaults
-r--r--r--   1 root  wheel     703 Jul 19  2010 device.hints
drwxr-xr-x   2 root  wheel     512 Jul 19  2010 firmware
-r--r--r--   1 root  wheel    2262 Jul 19  2010 frames.4th
-r--r--r--   1 root  wheel    7535 Jul 19  2010 gptboot
-r--r--r--   1 root  wheel   26895 Jul 19  2010 gptzfsboot
drwxr-xr-x   2 root  wheel   29184 Sep 19  2010 kernel
-r-xr-xr-x   1 root  wheel  233472 Jul 19  2010 loader
-r--r--r--   1 root  wheel    5865 Jul 19  2010 loader.4th
-rw-r--r--   1 root  wheel      35 Sep 19  2010 loader.conf
-r--r--r--   1 root  wheel   15219 Jul 19  2010 loader.help
-r--r--r--   1 root  wheel     396 Jul 19  2010 loader.rc
-r--r--r--   1 root  wheel     512 Jul 19  2010 mbr
drwxr-xr-x   2 root  wheel     512 Jul 19  2010 modules
-r--r--r--   1 root  wheel     512 Jul 19  2010 pmbr
-r--r--r--   1 root  wheel  235520 Jul 19  2010 pxeboot
-r--r--r--   1 root  wheel     703 Jul 19  2010 screen.4th
-r--r--r--   1 root  wheel   35136 Jul 19  2010 support.4th
drwxr-xr-x   2 root  wheel     512 Jul 19  2010 zfs
-r--r--r--   1 root  wheel   33280 Jul 19  2010 zfsboot
-r-xr-xr-x   1 root  wheel  253952 Jul 19  2010 zfsloader


mount:

Код:
Code:
/dev/mfid0s1a on / (ufs, local)
devfs on /dev (devfs, local, multilabel)
/dev/mfid0s1e on /tmp (ufs, local, soft-updates)
/dev/mfid0s1f on /usr (ufs, local, with quotas, soft-updates)
/dev/mfid0s1d on /var (ufs, local, soft-updates)
df -h:

Код:
Code:
Filesystem       Size    Used   Avail Capacity  Mounted on
/dev/mfid0s1a    496M    310M    146M    68%    /
devfs            1.0K    1.0K      0B   100%    /dev
/dev/mfid0s1e    496M    161M    295M    35%    /tmp
/dev/mfid0s1f    1.7T     66G    1.5T     4%    /usr
/dev/mfid0s1d     16G    4.9G     10G    32%    /var
cat /etc/crontab:

Код:
Code:
# /etc/crontab - root's crontab for FreeBSD
#
# $FreeBSD: src/etc/crontab,v 1.33.2.1.4.1 2010/06/14 02:09:06 kensmith Exp $
#
SHELL=/bin/sh
PATH=/etc:/bin:/sbin:/usr/bin:/usr/sbin
#
#minute    hour    mday    month    wday    who    command
#
*/5    *    *    *    *    root    /usr/libexec/atrun
#
# Save some entropy so that /dev/random can re-seed on boot.
*/11    *    *    *    *    operator /usr/libexec/save-entropy
#
# Rotate log files every hour, if necessary.
0    *    *    *    *    root    newsyslog
#
# Perform daily/weekly/monthly maintenance.
1    3    *    *    *    root    periodic daily
15    4    *    *    6    root    periodic weekly
30    5    1    *    *    root    periodic monthly
#
# Adjust the time zone if the CMOS clock keeps local time, as opposed to
# UTC time.  See adjkerntz(8) for details.
1,31    0-5    *    *    *    root    adjkerntz -a
find / -type f -perm -u+s -exec ls -la {} \; 2>/dev/null

Код:
Code:
-r-sr-xr-x  1 root  wheel  1008224 Apr 11  2011 /tmp/asd/bin/billmgr
-r-sr-xr-x  1 root  wheel  8176 Apr 11  2011 /tmp/asd/cgi/billmgr
-r-sr-xr-x  1 root  wheel  42688 Apr 11  2011 /tmp/asd/cgi/xml2csv
-r-sr-xr-x  1 root  wheel  105800 Apr 11  2011 /tmp/asd/cgi/report
-r-sr-xr-x  1 root  wheel  50728 Apr 11  2011 /tmp/asd/cgi/getattach
-r-sr-xr-x  1 root  wheel  52904 Apr 11  2011 /tmp/asd/cgi/getdcfile
-r-sr-xr-x  1 root  wheel  70960 Apr 11  2011 /tmp/asd/cgi/ajaxupload
-r-sr-xr-x  1 root  wheel  67944 Apr 11  2011 /tmp/asd/cgi/goserver
-r-sr-xr-x  1 root  wheel  50344 Apr 11  2011 /tmp/asd/cgi/whoiscgi
-r-sr-xr-x  1 root  wheel  50280 Apr 11  2011 /tmp/asd/cgi/domainlist
-r-sr-xr-x  1 root  wheel  61928 Apr 11  2011 /tmp/asd/cgi/billupload
-r-sr-xr-x  1 root  wheel  43848 Apr 11  2011 /tmp/asd/cgi/domaininfo
-r-sr-xr-x  1 root  wheel  20832 Apr 11  2011 /tmp/asd/cgi/partnerprogram
-r-sr-xr-x  1 root  wheel  30464 Apr 11  2011 /tmp/asd/cgi/click
-r-sr-xr-x  1 root  wheel  44296 Apr 11  2011 /tmp/asd/cgi/ympayment
-r-sr-xr-x  1 root  wheel  49384 Apr 11  2011 /tmp/asd/cgi/ymresult
-r-sr-xr-x  1 root  wheel  49224 Apr 11  2011 /tmp/asd/cgi/ymcheck
-r-sr-xr-x  1 root  wheel  32392 Apr 11  2011 /tmp/asd/cgi/ymfail
-r-sr-xr-x  1 root  wheel  32392 Apr 11  2011 /tmp/asd/cgi/ymsuccess
-r-sr-xr-x  1 root  wheel  44840 Apr 11  2011 /tmp/asd/cgi/wmpayment
-r-sr-xr-x  1 root  wheel  45416 Apr 11  2011 /tmp/asd/cgi/wmresult
-r-sr-xr-x  1 root  wheel  49096 Apr 11  2011 /tmp/asd/cgi/assistpayment
-r-sr-xr-x  1 root  wheel  62960 Apr 11  2011 /tmp/asd/cgi/assistresult
-r-sr-xr-x  1 root  wheel  44424 Apr 11  2011 /tmp/asd/cgi/rbkpayment
-r-sr-xr-x  1 root  wheel  45384 Apr 11  2011 /tmp/asd/cgi/rbkresult
-r-sr-xr-x  1 root  wheel  53832 Apr 11  2011 /tmp/asd/cgi/cyberresult
-r-sr-xr-x  1 root  wheel  45832 Apr 11  2011 /tmp/asd/cgi/cyberpayment
-r-sr-xr-x  1 root  wheel  45064 Apr 11  2011 /tmp/asd/cgi/roboxresult
-r-sr-xr-x  1 root  wheel  44424 Apr 11  2011 /tmp/asd/cgi/roboxpayment
-r-sr-xr-x  1 root  wheel  53608 Apr 11  2011 /tmp/asd/cgi/mobilmresult
-r-sr-xr-x  1 root  wheel  44392 Apr 11  2011 /tmp/asd/cgi/zppayment
-r-sr-xr-x  1 root  wheel  45256 Apr 11  2011 /tmp/asd/cgi/zpresult
-r-sr-xr-x  1 root  wheel  56104 Apr 11  2011 /tmp/asd/cgi/osmpresult
-r-sr-xr-x  1 root  wheel  44488 Apr 11  2011 /tmp/asd/cgi/intellimoneypayment
-r-sr-xr-x  1 root  wheel  45448 Apr 11  2011 /tmp/asd/cgi/intellimoneyresult
-r-sr-xr-x  1 root  wheel  57720 Apr 11  2011 /tmp/asd/cgi/liqpaypayment
-r-sr-xr-x  1 root  wheel  70328 Apr 11  2011 /tmp/asd/cgi/liqpayresult
-r-sr-xr-x  1 root  wheel  45712 Apr 11  2011 /tmp/asd/cgi/privatpayment
-r-sr-xr-x  1 root  wheel  71928 Apr 11  2011 /tmp/asd/cgi/privatresult
-r-sr-xr-x  1 root  wheel  62224 Apr 11  2011 /tmp/asd/cgi/moneybookersresult
-r-sr-xr-x  1 root  wheel  62224 Apr 11  2011 /tmp/asd/cgi/moneybookerspayment
-r-sr-xr-x  1 root  wheel  49096 Apr 11  2011 /tmp/asd/cgi/onpaypayment
-r-sr-xr-x  1 root  wheel  50696 Apr 11  2011 /tmp/asd/cgi/onpayresult
-r-sr-xr-x  1 root  wheel  44392 Apr 11  2011 /tmp/asd/cgi/prochangepayment
-r-sr-xr-x  1 root  wheel  44520 Apr 11  2011 /tmp/asd/cgi/prochangeresult
-r-sr-xr-x  1 root  wheel  48680 Apr 11  2011 /tmp/asd/cgi/pppayment
-r-sr-xr-x  1 root  wheel  63152 Apr 11  2011 /tmp/asd/cgi/ppresult
-r-sr-xr-x  1 root  wheel  44296 Apr 11  2011 /tmp/asd/cgi/2copayment
-r-sr-xr-x  1 root  wheel  48936 Apr 11  2011 /tmp/asd/cgi/2coresult
-r-sr-xr-x  1 root  wheel  48848 Apr 11  2011 /tmp/asd/cgi/quantgwpayment
-r-sr-xr-x  1 root  wheel  48936 Apr 11  2011 /tmp/asd/cgi/quantgwresult
-r-sr-xr-x  1 root  wheel  49520 Apr 11  2011 /tmp/asd/cgi/anpayment
-r-sr-xr-x  1 root  wheel  48872 Apr 11  2011 /tmp/asd/cgi/anresult
-r-sr-xr-x  1 root  wheel  5152 Apr 11  2011 /tmp/asd/sbin/suexec
-r-sr-xr-x  1 root  wheel  116616 Apr 11  2011 /tmp/asd/sbin/gatemail
-r-sr-xr-x  4 root  wheel  30136 Jul 19  2010 /usr/bin/at
-r-sr-xr-x  4 root  wheel  30136 Jul 19  2010 /usr/bin/atq
-r-sr-xr-x  4 root  wheel  30136 Jul 19  2010 /usr/bin/atrm
-r-sr-xr-x  4 root  wheel  30136 Jul 19  2010 /usr/bin/batch
-r-sr-xr-x  6 root  wheel  22848 Jul 19  2010 /usr/bin/chpass
-r-sr-xr-x  6 root  wheel  22848 Jul 19  2010 /usr/bin/chfn
-r-sr-xr-x  6 root  wheel  22848 Jul 19  2010 /usr/bin/chsh
-r-sr-xr-x  6 root  wheel  22848 Jul 19  2010 /usr/bin/ypchpass
-r-sr-xr-x  6 root  wheel  22848 Jul 19  2010 /usr/bin/ypchfn
-r-sr-xr-x  6 root  wheel  22848 Jul 19  2010 /usr/bin/ypchsh
-r-sr-xr-x  1 root  wheel  11568 Jul 19  2010 /usr/bin/lock
-r-sr-xr-x  1 root  wheel  25488 Jul 19  2010 /usr/bin/login
-r-sr-xr-x  1 root  wheel  7128 Jul 19  2010 /usr/bin/opieinfo
-r-sr-xr-x  1 root  wheel  14088 Jul 19  2010 /usr/bin/opiepasswd
-r-sr-xr-x  2 root  wheel  8224 Jul 19  2010 /usr/bin/passwd
-r-sr-xr-x  2 root  wheel  8224 Jul 19  2010 /usr/bin/yppasswd
-r-sr-xr-x  1 root  wheel  14128 Jul 19  2010 /usr/bin/rlogin
-r-sr-xr-x  1 root  wheel  11640 Jul 19  2010 /usr/bin/rsh
-r-sr-xr-x  1 root  wheel  16936 Jul 19  2010 /usr/bin/su
-r-sr-xr-x  1 root  wheel  33960 Jul 19  2010 /usr/bin/crontab
-r-sr-sr-x  1 root  daemon  34328 Jul 19  2010 /usr/bin/lpq
-r-sr-sr-x  1 root  daemon  34528 Jul 19  2010 /usr/bin/lpr
-r-sr-sr-x  1 root  daemon  30344 Jul 19  2010 /usr/bin/lprm
-r-sr-xr-x  1 root  wheel  1441528 Nov  3 08:06 /usr/local/ispmgr/bin/ispmgr
-r-sr-xr-x  1 root  wheel  1400376 Sep  8 09:29 /usr/local/ispmgr/bin/billmgr
-r-sr-xr-x  1 root  wheel  8472 Mar 13  2012 /usr/local/ispmgr/cgi/ispmgr
-r-sr-xr-x  1 root  wheel  61808 Aug  1  2013 /usr/local/ispmgr/cgi/cronrun
-r-sr-xr-x  1 root  wheel  57488 Aug  1  2013 /usr/local/ispmgr/cgi/mindterm
-r-sr-xr-x  1 root  wheel  45320 Jun  1 08:45 /usr/local/ispmgr/cgi/xml2csv
-r-sr-xr-x  1 root  wheel  29752 Sep  6  2012 /usr/local/ispmgr/cgi/outlook
-r-sr-xr-x  1 root  wheel  35864 Aug  1  2013 /usr/local/ispmgr/cgi/dbdownload
-r-sr-xr-x  1 root  wheel  62704 Aug  1  2013 /usr/local/ispmgr/cgi/download
-r-sr-xr-x  1 root  wheel  61672 Aug  1  2013 /usr/local/ispmgr/cgi/upload
-r-sr-xr-x  1 root  wheel  165760 Nov  3 08:09 /usr/local/ispmgr/cgi/bdownload
-r-sr-xr-x  1 root  wheel  165792 Nov  3 08:09 /usr/local/ispmgr/cgi/getuser
-r-sr-xr-x  1 root  wheel  8336 Nov 29  2011 /usr/local/ispmgr/cgi/dnsmgr
-r-sr-xr-x  1 root  wheel  8336 Nov 17  2011 /usr/local/ispmgr/cgi/ipmgr
-r-sr-xr-x  1 root  wheel  8472 Sep 19  2012 /usr/local/ispmgr/cgi/billmgr
-r-sr-xr-x  1 root  wheel  138800 Apr  7  2015 /usr/local/ispmgr/cgi/report
-r-sr-xr-x  1 root  wheel  59024 Oct 16  2014 /usr/local/ispmgr/cgi/getattach
-r-sr-xr-x  1 root  wheel  58832 Oct 16  2014 /usr/local/ispmgr/cgi/getdcfile
-r-sr-xr-x  1 root  wheel  99640 Apr 28  2015 /usr/local/ispmgr/cgi/ajaxupload
-r-sr-xr-x  1 root  wheel  73392 Mar  6  2015 /usr/local/ispmgr/cgi/goserver
-r-sr-xr-x  1 root  wheel  54640 Jun 21  2012 /usr/local/ispmgr/cgi/whoiscgi
-r-sr-xr-x  1 root  wheel  54416 Jun 21  2012 /usr/local/ispmgr/cgi/domainlist
-r-sr-xr-x  1 root  wheel  62632 Apr  7  2015 /usr/local/ispmgr/cgi/billupload
-r-sr-xr-x  1 root  wheel  20920 Aug 22  2012 /usr/local/ispmgr/cgi/partnerprogram
-r-sr-xr-x  1 root  wheel  34008 Oct  1  2014 /usr/local/ispmgr/cgi/click
-r-sr-xr-x  1 root  wheel  49040 Apr 28  2015 /usr/local/ispmgr/cgi/ympayment
-r-sr-xr-x  1 root  wheel  56400 Apr 28  2015 /usr/local/ispmgr/cgi/ymresult
-r-sr-xr-x  1 root  wheel  52688 Apr 28  2015 /usr/local/ispmgr/cgi/ymcheck
-r-sr-xr-x  1 root  wheel  33360 Apr 28  2015 /usr/local/ispmgr/cgi/ymfail
-r-sr-xr-x  1 root  wheel  33360 Apr 28  2015 /usr/local/ispmgr/cgi/ymsuccess
-r-sr-xr-x  1 root  wheel  48816 Apr 28  2015 /usr/local/ispmgr/cgi/wmpayment
-r-sr-xr-x  1 root  wheel  58400 Apr 28  2015 /usr/local/ispmgr/cgi/wmresult
-r-sr-xr-x  1 root  wheel  49360 Apr 28  2015 /usr/local/ispmgr/cgi/assistpayment
-r-sr-xr-x  1 root  wheel  49296 Apr 28  2015 /usr/local/ispmgr/cgi/assistresult
-r-sr-xr-x  1 root  wheel  48656 Apr 28  2015 /usr/local/ispmgr/cgi/rbkpayment
-r-sr-xr-x  1 root  wheel  45392 Apr 28  2015 /usr/local/ispmgr/cgi/rbkresult
-r-sr-xr-x  1 root  wheel  49168 Apr 28  2015 /usr/local/ispmgr/cgi/cyberpayment
-r-sr-xr-x  1 root  wheel  54064 Apr 28  2015 /usr/local/ispmgr/cgi/cyberresult
-r-sr-xr-x  1 root  wheel  48784 Apr 28  2015 /usr/local/ispmgr/cgi/roboxresult
-r-sr-xr-x  1 root  wheel  44528 Apr 28  2015 /usr/local/ispmgr/cgi/roboxpayment
-r-sr-xr-x  1 root  wheel  53200 Apr 28  2015 /usr/local/ispmgr/cgi/mobilmresult
-r-sr-xr-x  1 root  wheel  48688 Apr 28  2015 /usr/local/ispmgr/cgi/zppayment
-r-sr-xr-x  1 root  wheel  45712 Apr 28  2015 /usr/local/ispmgr/cgi/zpresult
-r-sr-xr-x  1 root  wheel  56432 Apr 28  2015 /usr/local/ispmgr/cgi/osmpresult
-r-sr-xr-x  1 root  wheel  48656 Apr 28  2015 /usr/local/ispmgr/cgi/intellimoneypayment
-r-sr-xr-x  1 root  wheel  49552 Apr 28  2015 /usr/local/ispmgr/cgi/intellimoneyresult
-r-sr-xr-x  1 root  wheel  60640 Apr 28  2015 /usr/local/ispmgr/cgi/liqpaypayment
-r-sr-xr-x  1 root  wheel  90720 Apr 28  2015 /usr/local/ispmgr/cgi/liqpayresult
-r-sr-xr-x  1 root  wheel  53432 Apr 28  2015 /usr/local/ispmgr/cgi/privatpayment
-r-sr-xr-x  1 root  wheel  76544 Apr 28  2015 /usr/local/ispmgr/cgi/privatresult
-r-sr-xr-x  1 root  wheel  49104 Apr 28  2015 /usr/local/ispmgr/cgi/pppayment
-r-sr-xr-x  1 root  wheel  64984 Apr 28  2015 /usr/local/ispmgr/cgi/moneybookersresult
-r-sr-xr-x  1 root  wheel  65784 Apr 28  2015 /usr/local/ispmgr/cgi/moneybookerspayment
-r-sr-xr-x  1 root  wheel  53136 Apr 28  2015 /usr/local/ispmgr/cgi/ppresult
-r-sr-xr-x  1 root  wheel  44336 Apr 28  2015 /usr/local/ispmgr/cgi/2copayment
-r-sr-xr-x  1 root  wheel  49296 Apr 28  2015 /usr/local/ispmgr/cgi/2coresult
-r-sr-xr-x  1 root  wheel  48888 Apr 28  2015 /usr/local/ispmgr/cgi/quantgwpayment
-r-sr-xr-x  1 root  wheel  49008 Apr 28  2015 /usr/local/ispmgr/cgi/quantgwresult
-r-sr-xr-x  1 root  wheel  53304 Apr 28  2015 /usr/local/ispmgr/cgi/anpayment
-r-sr-xr-x  1 root  wheel  48976 Apr 28  2015 /usr/local/ispmgr/cgi/anresult
-r-sr-xr-x  1 root  wheel  58256 Apr  7  2015 /usr/local/ispmgr/cgi/domaininfo
-r-sr-xr-x  1 root  wheel  44752 Apr 28  2015 /usr/local/ispmgr/cgi/prochangeresult
-r-sr-xr-x  1 root  wheel  57808 Apr 28  2015 /usr/local/ispmgr/cgi/onpayresult
-r-sr-xr-x  1 root  wheel  44496 Apr 28  2015 /usr/local/ispmgr/cgi/prochangepayment
-r-sr-xr-x  1 root  wheel  49392 Apr 28  2015 /usr/local/ispmgr/cgi/onpaypayment
-r-sr-xr-x  1 root  wheel  48944 Apr 28  2015 /usr/local/ispmgr/cgi/interkassapayment
-r-sr-xr-x  1 root  wheel  49136 Apr 28  2015 /usr/local/ispmgr/cgi/interkassaresult
-r-sr-xr-x  1 root  wheel  87544 Aug 13 08:07 /usr/local/ispmgr/cgi/save2pdf
-r-sr-xr-x  1 root  wheel  49040 Apr 28  2015 /usr/local/ispmgr/cgi/a1payresult
-r-sr-xr-x  1 root  wheel  44496 Apr 28  2015 /usr/local/ispmgr/cgi/a1paypayment
-r-sr-xr-x  1 root  wheel  16632 Oct  1  2014 /usr/local/ispmgr/cgi/login
-r-sr-xr-x  1 root  wheel  63472 Aug  1  2013 /usr/local/ispmgr/cgi/certdownload
-r-sr-xr-x  1 root  wheel  58040 Apr 28  2015 /usr/local/ispmgr/cgi/pdresult
-r-sr-xr-x  1 root  wheel  44368 Apr 28  2015 /usr/local/ispmgr/cgi/mobimpayment
-r-sr-xr-x  1 root  wheel  66768 Aug 22  2012 /usr/local/ispmgr/cgi/cacgi
-r-sr-xr-x  1 root  wheel  58168 Apr 28  2015 /usr/local/ispmgr/cgi/paydollar
-r-sr-xr-x  1 root  wheel  49296 Apr 28  2015 /usr/local/ispmgr/cgi/newassistresult
-r-sr-xr-x  1 root  wheel  48944 Apr 28  2015 /usr/local/ispmgr/cgi/paymasterpayment
-r-sr-xr-x  1 root  wheel  49168 Apr 28  2015 /usr/local/ispmgr/cgi/newassistpayment
-r-sr-xr-x  1 root  wheel  59360 Apr 28  2015 /usr/local/ispmgr/cgi/paymasterresult
-r-sr-xr-x  1 root  wheel  49168 Apr 28  2015 /usr/local/ispmgr/cgi/w2ppayment
-r-sr-xr-x  1 root  wheel  53872 Apr 28  2015 /usr/local/ispmgr/cgi/w2presult
-r-sr-xr-x  1 root  wheel  30312 Nov 12  2014 /usr/local/ispmgr/cgi/getkb
-r-sr-xr-x  1 root  wheel  73040 Apr 28  2015 /usr/local/ispmgr/cgi/telepayresult
-r-sr-xr-x  1 root  wheel  36976 Apr 28  2015 /usr/local/ispmgr/cgi/tptest
-r-sr-xr-x  1 root  wheel  49104 Apr 28  2015 /usr/local/ispmgr/cgi/webpaypayment
-r-sr-xr-x  1 root  wheel  48976 Apr 28  2015 /usr/local/ispmgr/cgi/webpayresult
-r-sr-xr-x  1 root  wheel  80920 Apr 28  2015 /usr/local/ispmgr/cgi/cybermobilepayment
-r-sr-xr-x  1 root  wheel  83320 Apr 28  2015 /usr/local/ispmgr/cgi/successresult
-r-sr-xr-x  1 root  wheel  49168 Apr 28  2015 /usr/local/ispmgr/cgi/unitellerresult
-r-sr-xr-x  1 root  wheel  49488 Apr 28  2015 /usr/local/ispmgr/cgi/unitellerpayment
-r-sr-xr-x  1 root  wheel  51184 Apr 28  2015 /usr/local/ispmgr/cgi/popayment
-r-sr-xr-x  1 root  wheel  59248 Apr 28  2015 /usr/local/ispmgr/cgi/poresult
-r-sr-xr-x  1 root  wheel  53528 Apr 28  2015 /usr/local/ispmgr/cgi/upcpayment
-r-sr-xr-x  1 root  wheel  48760 Apr 28  2015 /usr/local/ispmgr/cgi/upcresult
-r-sr-xr-x  1 root  wheel  49424 Apr 28  2015 /usr/local/ispmgr/cgi/waytopayresult
-r-sr-xr-x  1 root  wheel  45488 Apr 28  2015 /usr/local/ispmgr/cgi/waytopaypayment
-r-sr-xr-x  1 root  wheel  49072 Apr 28  2015 /usr/local/ispmgr/cgi/braspagpayment
-r-sr-xr-x  1 root  wheel  61472 Apr 28  2015 /usr/local/ispmgr/cgi/ymnotifyresult
-r-sr-xr-x  1 root  wheel  49296 Apr 28  2015 /usr/local/ispmgr/cgi/ymnotifypayment
-r-sr-xr-x  1 root  wheel  57184 Sep 12  2013 /usr/local/ispmgr/cgi/libertyresult
-r-sr-xr-x  1 root  wheel  49040 Sep 12  2013 /usr/local/ispmgr/cgi/libertypayment
-r-sr-xr-x  1 root  wheel  75800 Apr 28  2015 /usr/local/ispmgr/cgi/copaycoresult
-r-sr-xr-x  1 root  wheel  49296 Apr 28  2015 /usr/local/ispmgr/cgi/copaycopayment
-r-sr-xr-x  1 root  wheel  49488 Apr 28  2015 /usr/local/ispmgr/cgi/okpayresult
-r-sr-xr-x  1 root  wheel  48720 Apr 28  2015 /usr/local/ispmgr/cgi/okpaypayment
-r-sr-xr-x  1 root  wheel  49552 Apr 28  2015 /usr/local/ispmgr/cgi/bank24payment
-r-sr-xr-x  1 root  wheel  49200 Apr 28  2015 /usr/local/ispmgr/cgi/bank24result
-r-sr-xr-x  1 root  wheel  5800 Sep  8 09:29 /usr/local/ispmgr/sbin/suexec
-r-sr-xr-x  1 root  wheel  75304 Nov  5  2013 /usr/local/ispmgr/sbin/responder
-r-sr-xr-x  1 root  wheel  34856 Aug  1  2013 /usr/local/ispmgr/sbin/vacation
-r-sr-xr-x  1 root  wheel  1146432 Nov  3 08:07 /usr/local/ispmgr/sbin/pbackup
-r-sr-xr-x  1 root  wheel  1733296 Nov  3 08:08 /usr/local/ispmgr/sbin/usermove
-r-sr-xr-x  1 root  wheel  160208 Jul 13 12:53 /usr/local/ispmgr/sbin/gatemail
-r-sr-xr-x  1 root  wheel  49232 Apr 28  2015 /usr/local/ispmgr/sbin/mobimresult
-r-sr-xr-x  1 root  wheel  432024 Apr  7  2015 /usr/local/ispmgr/sbin/billbackup
---s--x--x  2 root  wheel  162136 Oct 16  2010 /usr/local/bin/sudoedit
---s--x--x  2 root  wheel  162136 Oct 16  2010 /usr/local/bin/sudo
-rwsr-xr-x  1 root  wheel  18120 Oct 25  2010 /usr/local/bin/pkexec
-rwsr-sr-x  1 root  mail  92984 Oct 25  2012 /usr/local/bin/procmail
-rwsr-x---  1 root  messagebus  254752 Oct 25  2010 /usr/local/libexec/dbus-daemon-launch-helper
-rwsr-xr-x  1 root  wheel  11520 Oct 25  2010 /usr/local/libexec/polkit-agent-helper-1
-r-sr-xr-x  1 root  wheel  55464 Feb 21  2011 /usr/local/sbin/mtr
-r-sr-sr-x  1 root  authpf  19856 Jul 19  2010 /usr/sbin/authpf
-r-sr-x---  1 root  network  401320 Jul 19  2010 /usr/sbin/ppp
-r-sr-xr-x  1 root  wheel  21176 Jul 19  2010 /usr/sbin/timedc
-r-sr-xr-x  1 root  wheel  27216 Jul 19  2010 /usr/sbin/traceroute
-r-sr-xr-x  1 root  wheel  24480 Jul 19  2010 /usr/sbin/traceroute6
Все что было, всего чего здесь нет -- не было вывода. Помогите с сервом, впервый раз рутаю.
 
Ответить с цитированием

  #603  
Старый 27.11.2015, 11:04
YaBtr
Guest
Сообщений: n/a
Провел на форуме:
132418

Репутация: 652
По умолчанию

Цитата:
Сообщение от Filipp  
Filipp said:

[COLOR="rgb(128, 255, 0)"]uname -a:[/COLOR]
Код:
Code:
FreeBSD site.com 8.1-RELEASE FreeBSD 8.1-RELEASE #0: Sun Jul 25 23:33:02 UTC 2010 root@wdc-srv.ispsystem.net:/usr/src/sys/amd64/compile/ISPSYSTEM  amd64

Попробуйте http://0day.today/exploit/14374
 
Ответить с цитированием

  #604  
Старый 27.11.2015, 20:59
Filipp
Guest
Сообщений: n/a
Провел на форуме:
98300

Репутация: 31
По умолчанию

Цитата:
Сообщение от YaBtr  
YaBtr said:

Попробуйте
http://0day.today/exploit/14374
Компилиться без ошибок, выполняю -- бэк дает, все отрабатывает, а рута нету. Не работает(((
 
Ответить с цитированием

  #605  
Старый 03.12.2015, 06:34
GroM88
Познающий
Регистрация: 25.10.2007
Сообщений: 46
Провел на форуме:
318186

Репутация: 2
Отправить сообщение для GroM88 с помощью ICQ
По умолчанию

Подскажите чем штуку такую пробить можно...)

uname -a

Linux 2.6.18 #1 SMP Mon Jul 1 22:13:01 MSD 2013 i686 i686 i386 GNU/Linux

Остальная собранная инфа:

http://pastebin.com/z9eN9Fif
 
Ответить с цитированием

  #606  
Старый 22.12.2015, 21:30
Vip77
Guest
Сообщений: n/a
Провел на форуме:
46989

Репутация: 20
По умолчанию

Есть что под сие?

uname -a

Код:
Code:
Linux ***.com 2.6.32-431.29.2.el6.x86_64 #1 SMP Tue Sep 9 21:36:05 UTC 2014 x86_64 x86_64 x86_64 GNU/Linux
ls -la /boot

Код:
Code:
total 43336
dr-xr-xr-x.  4 root root  4096 Oct 14  2014 .
dr-xr-xr-x. 22 root root  4096 Oct  8 03:44 ..
-rw-r--r--.  1 root root  171 Sep  9  2014 .vmlinuz-2.6.32-431.29.2.el6.x86_64.hmac
-rw-r--r--.  1 root root  166 Nov 21  2013 .vmlinuz-2.6.32-431.el6.x86_64.hmac
-rw-r--r--.  1 root root  2519815 Sep  9  2014 System.map-2.6.32-431.29.2.el6.x86_64
-rw-r--r--.  1 root root  2518236 Nov 21  2013 System.map-2.6.32-431.el6.x86_64
-rw-r--r--.  1 root root  105200 Sep  9  2014 config-2.6.32-431.29.2.el6.x86_64
-rw-r--r--.  1 root root  105195 Nov 21  2013 config-2.6.32-431.el6.x86_64
drwxr-xr-x.  3 root root  4096 Oct 13  2014 efi
drwxr-xr-x.  2 root root  4096 Oct 14  2014 grub
-rw-------.  1 root root 15220904 Oct 14  2014 initramfs-2.6.32-431.29.2.el6.x86_64.img
-rw-------.  1 root root 15216205 Oct 13  2014 initramfs-2.6.32-431.el6.x86_64.img
-rw-r--r--.  1 root root  193945 Sep  9  2014 symvers-2.6.32-431.29.2.el6.x86_64.gz
-rw-r--r--.  1 root root  193758 Nov 21  2013 symvers-2.6.32-431.el6.x86_64.gz
-rwxr-xr-x.  1 root root  4131984 Sep  9  2014 vmlinuz-2.6.32-431.29.2.el6.x86_64
-rwxr-xr-x.  1 root root  4128368 Nov 21  2013 vmlinuz-2.6.32-431.el6.x86_64
ls -la --full-time /lib

Код:
Code:
total 32
dr-xr-xr-x.  8 root root 4096 2014-10-15 04:08:41.135969938 -0400 .
dr-xr-xr-x. 22 root root 4096 2015-10-08 03:44:57.976293544 -0400 ..
lrwxrwxrwx  1 root root  14 2014-10-15 04:08:41.135969938 -0400 cpp -> ../usr/bin/cpp
drwxr-xr-x. 42 root root 4096 2014-10-14 12:23:53.729344301 -0400 firmware
drwxr-xr-x.  6 root root 4096 2014-10-13 09:33:41.365999951 -0400 kbd
dr-xr-xr-x.  4 root root 4096 2014-10-14 12:24:20.285344296 -0400 modules
drwxr-xr-x.  2 root root 4096 2013-11-22 09:06:19.000000000 -0500 security
drwxr-xr-x.  6 root root 4096 2014-10-13 09:31:54.435999970 -0400 terminfo
drwxr-xr-x.  5 root root 4096 2014-10-14 12:24:19.398344296 -0400 udev


mount


Код:
Code:
/dev/sda1 on / type ext4 (rw)
proc on /proc type proc (rw)
sysfs on /sys type sysfs (rw)
devpts on /dev/pts type devpts (rw,gid=5,mode=620)
tmpfs on /dev/shm type tmpfs (rw)
/dev/sda8 on /home type ext4 (rw)
/dev/sda5 on /tmp type ext4 (rw)
/dev/sda6 on /usr type ext4 (rw)
/dev/sda7 on /usr/local type ext4 (rw)
/dev/sda3 on /var type ext4 (rw)
none on /proc/sys/fs/binfmt_misc type binfmt_misc (rw)
tmpfs on /mnt/ram type tmpfs (rw,size=20m)


df -h


Код:
Code:
Filesystem  Size  Used Avail Use% Mounted on
/dev/sda1  16G  828M  15G  6% /
tmpfs  7.8G  0  7.8G  0% /dev/shm
/dev/sda8  412G  25G  367G  7% /home
/dev/sda5  16G  232M  15G  2% /tmp
/dev/sda6  16G  817M  15G  6% /usr
/dev/sda7  16G  7.6G  7.4G  51% /usr/local
/dev/sda3  60G  4.6G  52G  9% /var
tmpfs  20M  7.3M  13M  37% /mnt/ram
cat /etc/issue

Код:
Code:
CentOS release 6.5 (Final)
Kernel \r on an \m


cat /etc/crontab


Код:
Code:
SHELL=/bin/bash
PATH=/sbin:/bin:/usr/sbin:/usr/bin
MAILTO=root
HOME=/

# For details see man 4 crontabs

# Example of job definition:
# .---------------- minute (0 - 59)
# |  .------------- hour (0 - 23)
# |  |  .---------- day of month (1 - 31)
# |  |  |  .------- month (1 - 12) OR jan,feb,mar,apr ...
# |  |  |  |  .---- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
# |  |  |  |  |
# *  *  *  *  * user-name command to be executed
ls -la /etc/cron.d

Код:
Code:
total 20
drwxr-xr-x.  2 root root 4096 Oct 15  2014 .
drwxr-xr-x. 71 root root 4096 Oct  8 04:27 ..
-rw-r--r--.  1 root root  113 Nov 23  2013 0hourly
-rw-r--r--.  1 root root  108 Apr  7  2014 raid-check
-rw-r--r--  1 root root  235 Aug 29  2014 sysstat
cat /etc/cron.d/0hourly

Код:
Code:
SHELL=/bin/bash
PATH=/sbin:/bin:/usr/sbin:/usr/bin
MAILTO=root
HOME=/
01 * * * * root run-parts /etc/cron.hourly
cat /etc/cron.d/raid-check

Код:
Code:
# Run system wide raid-check once a week on Sunday at 1am by default
0 1 * * Sun root /usr/sbin/raid-check
cat /etc/cron.d/sysstat

Код:
Code:
# Run system activity accounting tool every 10 minutes
*/10 * * * * root /usr/lib64/sa/sa1 1 1
# 0 * * * * root /usr/lib64/sa/sa1 600 6 &
# Generate a daily summary of process accounting at 23:53
53 23 * * * root /usr/lib64/sa/sa2 -A
cat /proc/version

Код:
Code:
Linux version 2.6.32-431.29.2.el6.x86_64 (mockbuild@c6b9.bsys.dev.centos.org) (gcc version 4.4.7 20120313 (Red Hat 4.4.7-4) (GCC) ) #1 SMP Tue Sep 9 21:36:05 UTC 2014
cat /proc/sys/vm/mmap_min_addr

Код:
Code:
4096


ls -la /etc/cron.hourly


Код:
Code:
total 12
drwxr-xr-x.  2 root root 4096 Sep 26  2011 .
drwxr-xr-x. 71 root root 4096 Oct  8 04:27 ..
-rwxr-xr-x.  1 root root  409 Nov 23  2013 0anacron
cat /etc/cron.hourly/0anacron

Код:
Code:
#!/bin/bash
# Skip excecution unless the date has changed from the previous run
if test -r /var/spool/anacron/cron.daily; then
  day=`cat /var/spool/anacron/cron.daily`
fi
if [ `date +%Y%m%d` = "$day" ]; then
  exit 0;
fi

# Skip excecution unless AC powered
if test -x /usr/bin/on_ac_power; then
  /usr/bin/on_ac_power &> /dev/null
  if test $? -eq 1; then
  exit 0
  fi
fi
/usr/sbin/anacron -s
find / -type f -perm -u+s -exec ls -la {} \; 2>/dev/null

Код:
Code:
-rwsr-xr-x. 1 root root 10272 Nov 22  2013 /sbin/pam_timestamp_check
-rwsr-xr-x. 1 root root 34840 Nov 22  2013 /sbin/unix_chkpwd
-rwsr-xr-x. 1 root root 77336 Apr 28  2014 /bin/mount
-rwsr-xr-x. 1 root root 40760 Sep 26  2013 /bin/ping
-rwsr-x---. 1 root fuse 27968 Dec  7  2011 /bin/fusermount
-rwsr-xr-x. 1 root root 36488 Sep 26  2013 /bin/ping6
-rwsr-xr-x. 1 root root 53472 Apr 28  2014 /bin/umount
-rwsr-xr-x. 1 root root 34904 Jun 25  2014 /bin/su
-rwsr-x--- 1 root dbus 46232 Sep 13  2012 /lib64/dbus-1/dbus-daemon-launch-helper
-rwsr-xr-x. 1 root root 9000 Sep  3  2014 /usr/sbin/usernetctl
---s--x--x. 1 root root 123832 Nov 22  2013 /usr/bin/sudo
-rwsr-xr-x. 1 root root 71480 Dec  7  2011 /usr/bin/gpasswd
-rwsr-xr-x. 1 root root 51784 Nov 23  2013 /usr/bin/crontab
-rwsr-xr-x. 1 root root 30768 Feb 22  2012 /usr/bin/passwd
-rwsr-xr-x 1 root root 18072 Sep 19  2013 /usr/bin/pkexec
-rws--x--x. 1 root root 20056 Apr 28  2014 /usr/bin/chsh
-rwsr-xr-x. 1 root root 66352 Dec  7  2011 /usr/bin/chage
-rwsr-xr-x. 1 root root 36144 Dec  7  2011 /usr/bin/newgrp
-rws--x--x. 1 root root 20184 Apr 28  2014 /usr/bin/chfn
-rws--x--x. 1 root root 14280 Aug 29  2014 /usr/libexec/pt_chown
-rwsr-xr-x. 1 root root 237376 Nov 22  2013 /usr/libexec/openssh/ssh-keysign
-rwsr-xr-x 1 root root 11080 Sep 19  2013 /usr/libexec/polkit-1/polkit-agent-helper-1
 
Ответить с цитированием

  #607  
Старый 27.12.2015, 12:28
Zilt0
Новичок
Регистрация: 01.04.2009
Сообщений: 14
Провел на форуме:
92038

Репутация: 10
Отправить сообщение для Zilt0 с помощью ICQ
По умолчанию

Ребята, помогите, даю $200, тому кто поможет с рутом, (писать в ЛС):

uname -a

Linux xxx.ru 2.6.32-504.16.2.el6.x86_64 #1 SMP Tue Mar 10 17:01:00 EDT 2015 x86_64 x86_64 x86_64 GNU/Linux

ls -la /boot

dr-xr-xr-x. 4 root root 4096 Dec 17 11:43 .

dr-xr-xr-x. 24 root root 4096 Oct 7 08:33 ..

-rw-r--r-- 1 root root 171 Mar 10 2015 .vmlinuz-2.6.32-504.16.2.el6.x86_64.hmac

-rw-r--r-- 1 root root 171 Nov 23 17:58 .vmlinuz-2.6.32-573.12.1.el6.x86_64.hmac

-rw-r--r-- 1 root root 2545609 Mar 10 2015 System.map-2.6.32-504.16.2.el6.x86_64

-rw-r--r-- 1 root root 2585672 Nov 23 17:58 System.map-2.6.32-573.12.1.el6.x86_64

-rw-r--r-- 1 root root 106313 Mar 10 2015 config-2.6.32-504.16.2.el6.x86_64

-rw-r--r-- 1 root root 107139 Nov 23 17:58 config-2.6.32-573.12.1.el6.x86_64

drwxr-xr-x. 3 root root 4096 Jan 28 2014 efi

drwxr-xr-x. 2 root root 4096 Dec 17 11:43 grub

-rw------- 1 root root 19178534 Apr 24 2015 initramfs-2.6.32-504.16.2.el6.x86_64.img

-rw------- 1 root root 24641878 Dec 17 11:43 initramfs-2.6.32-573.12.1.el6.x86_64.img

-rw-r--r-- 1 root root 200317 Mar 10 2015 symvers-2.6.32-504.16.2.el6.x86_64.gz

-rw-r--r-- 1 root root 206008 Nov 23 17:59 symvers-2.6.32-573.12.1.el6.x86_64.gz

-rwxr-xr-x 1 root root 4153296 Mar 10 2015 vmlinuz-2.6.32-504.16.2.el6.x86_64

-rwxr-xr-x 1 root root 4222736 Nov 23 17:58 vmlinuz-2.6.32-573.12.1.el6.x86_64

ls -la --full-time /lib

dr-xr-xr-x. 10 root root 4096 2015-12-14 10:25:53.059324786 +0000 .

dr-xr-xr-x. 24 root root 4096 2015-10-07 08:33:06.521146748 +0100 ..

lrwxrwxrwx 1 root root 14 2015-08-05 11:24:39.585708251 +0100 cpp -> ../usr/bin/cpp

drwxr-xr-x. 44 root root 12288 2015-12-17 11:43:13.810422798 +0000 firmware

drwxr-xr-x 3 root root 4096 2015-08-26 12:14:42.000000000 +0100 i686

drwxr-xr-x. 6 root root 4096 2014-01-28 10:26:02.526367363 +0000 kbd

-rwxr-xr-x 1 root root 141176 2015-08-26 12:40:51.000000000 +0100 ld-2.12.so

lrwxrwxrwx 1 root root 10 2015-09-29 09:57:42.229365669 +0100 ld-linux.so.2 -> ld-2.12.so

-rwxr-xr-x 1 root root 7224 2015-08-26 12:40:53.000000000 +0100 libBrokenLocale-2.12.so

lrwxrwxrwx 1 root root 23 2015-09-29 09:57:42.230365669 +0100 libBrokenLocale.so.1 -> libBrokenLocale-2.12.so

-rwxr-xr-x 1 root root 20376 2015-08-26 12:40:51.000000000 +0100 libSegFault.so

-rwxr-xr-x 1 root root 13416 2015-08-26 12:40:53.000000000 +0100 libanl-2.12.so

lrwxrwxrwx 1 root root 14 2015-09-29 09:57:42.231365669 +0100 libanl.so.1 -> libanl-2.12.so

-rwxr-xr-x 1 root root 1902684 2015-08-26 12:40:48.000000000 +0100 libc-2.12.so

lrwxrwxrwx 1 root root 12 2015-09-29 09:57:42.307365669 +0100 libc.so.6 -> libc-2.12.so

-rwxr-xr-x 1 root root 190992 2015-08-26 12:40:52.000000000 +0100 libcidn-2.12.so

lrwxrwxrwx 1 root root 15 2015-09-29 09:57:42.314365669 +0100 libcidn.so.1 -> libcidn-2.12.so

-rwxr-xr-x 1 root root 38380 2015-08-26 12:40:49.000000000 +0100 libcrypt-2.12.so

lrwxrwxrwx 1 root root 16 2015-09-29 09:57:42.315365669 +0100 libcrypt.so.1 -> libcrypt-2.12.so

-rwxr-xr-x 1 root root 17896 2015-08-26 12:40:52.000000000 +0100 libdl-2.12.so

lrwxrwxrwx 1 root root 13 2015-09-29 09:57:42.316365669 +0100 libdl.so.2 -> libdl-2.12.so

-rw-r--r-- 1 root root 899 2015-08-10 15:34:50.000000000 +0100 libfreebl3.chk

-rwxr-xr-x 1 root root 9604 2015-08-10 15:34:49.000000000 +0100 libfreebl3.so

-rw-r--r-- 1 root root 899 2015-08-10 15:34:50.000000000 +0100 libfreeblpriv3.chk

-rwxr-xr-x 1 root root 378504 2015-08-10 15:34:49.000000000 +0100 libfreeblpriv3.so

-rwxr-xr-x 1 root root 120672 2015-06-01 12:36:01.000000000 +0100 libgcc_s-4.4.7-20120601.so.1

lrwxrwxrwx 1 root root 28 2015-12-13 11:06:00.471280730 +0000 libgcc_s.so.1 -> libgcc_s-4.4.7-20120601.so.1

-rwxr-xr-x 1 root root 200024 2015-08-26 12:40:49.000000000 +0100 libm-2.12.so

lrwxrwxrwx 1 root root 12 2015-09-29 09:57:42.324365669 +0100 libm.so.6 -> libm-2.12.so

-rwxr-xr-x 1 root root 113912 2015-08-26 12:40:49.000000000 +0100 libnsl-2.12.so

lrwxrwxrwx 1 root root 14 2015-09-29 09:57:42.329365669 +0100 libnsl.so.1 -> libnsl-2.12.so

-rwxr-xr-x 1 root root 40200 2015-08-26 12:40:47.000000000 +0100 libnss_compat-2.12.so

lrwxrwxrwx 1 root root 21 2015-09-29 09:57:42.331365669 +0100 libnss_compat.so.2 -> libnss_compat-2.12.so

-rwxr-xr-x 1 root root 25596 2015-08-26 12:40:53.000000000 +0100 libnss_dns-2.12.so

lrwxrwxrwx 1 root root 18 2015-09-29 09:57:42.332365669 +0100 libnss_dns.so.2 -> libnss_dns-2.12.so

-rwxr-xr-x 1 root root 58708 2015-08-26 12:40:51.000000000 +0100 libnss_files-2.12.so

lrwxrwxrwx 1 root root 20 2015-09-29 09:57:42.334365669 +0100 libnss_files.so.2 -> libnss_files-2.12.so

-rwxr-xr-x 1 root root 22140 2015-08-26 12:40:53.000000000 +0100 libnss_hesiod-2.12.so

lrwxrwxrwx 1 root root 21 2015-09-29 09:57:42.335365669 +0100 libnss_hesiod.so.2 -> libnss_hesiod-2.12.so

-rwxr-xr-x 1 root root 49712 2015-08-26 12:40:48.000000000 +0100 libnss_nis-2.12.so

lrwxrwxrwx 1 root root 18 2015-09-29 09:57:42.337365669 +0100 libnss_nis.so.2 -> libnss_nis-2.12.so

-rwxr-xr-x 1 root root 58712 2015-08-26 12:40:47.000000000 +0100 libnss_nisplus-2.12.so

lrwxrwxrwx 1 root root 22 2015-09-29 09:57:42.339365669 +0100 libnss_nisplus.so.2 -> libnss_nisplus-2.12.so

-rwxr-xr-x 1 root root 131220 2015-08-26 12:40:48.000000000 +0100 libpthread-2.12.so

lrwxrwxrwx 1 root root 18 2015-09-29 09:57:42.345365669 +0100 libpthread.so.0 -> libpthread-2.12.so

-rwxr-xr-x 1 root root 103388 2015-08-26 12:40:47.000000000 +0100 libresolv-2.12.so

lrwxrwxrwx 1 root root 17 2015-09-29 09:57:42.349365669 +0100 libresolv.so.2 -> libresolv-2.12.so

-rwxr-xr-x 1 root root 39712 2015-08-26 12:40:51.000000000 +0100 librt-2.12.so

lrwxrwxrwx 1 root root 13 2015-09-29 09:57:42.351365669 +0100 librt.so.1 -> librt-2.12.so

-rwxr-xr-x 1 root root 31620 2015-08-26 12:40:54.000000000 +0100 libthread_db-1.0.so

lrwxrwxrwx 1 root root 19 2015-09-29 09:57:42.353365669 +0100 libthread_db.so.1 -> libthread_db-1.0.so

-rwxr-xr-x 1 root root 12792 2015-08-26 12:40:52.000000000 +0100 libutil-2.12.so

lrwxrwxrwx 1 root root 15 2015-09-29 09:57:42.353365669 +0100 libutil.so.1 -> libutil-2.12.so

lrwxrwxrwx 1 root root 13 2015-12-14 10:25:53.050324786 +0000 libz.so.1 -> libz.so.1.2.3

-rwxr-xr-x 1 root root 75384 2012-10-03 17:18:48.000000000 +0100 libz.so.1.2.3

dr-xr-xr-x. 4 root root 4096 2015-12-17 11:43:19.774422792 +0000 modules

drwxr-xr-x 3 root root 4096 2015-09-29 09:57:42.355365669 +0100 rtkaio

drwxr-xr-x. 2 root root 4096 2015-08-04 15:08:58.000000000 +0100 security

drwxr-xr-x. 6 root root 4096 2015-02-19 16:44:23.000000000 +0000 terminfo

drwxr-xr-x. 5 root root 4096 2015-12-17 11:43:09.066422802 +0000 udev

mount

/dev/sda1 on / type ext4 (rw)

proc on /proc type proc (rw)

sysfs on /sys type sysfs (rw)

devpts on /dev/pts type devpts (rw,gid=5,mode=620)

tmpfs on /dev/shm type tmpfs (rw,noexec,size=2G)

/dev/sda3 on /tmp type ext4 (rw)

/dev/sda5 on /usr type ext4 (rw)

/dev/sda6 on /var type ext4 (rw,nosuid,noatime)

none on /proc/sys/fs/binfmt_misc type binfmt_misc (rw)

sunrpc on /var/lib/nfs/rpc_pipefs type rpc_pipefs (rw)

10.0.3.53:/home/sites on /home/sites type nfs (rw,nosuid,noatime,hard,intr,rsize=8192,wsize=8192 ,nfsvers=3,addr=10.0.3.53)

df -h

Filesystem Size Used Avail Use% Mounted on

/dev/sda1 3.9G 796M 2.9G 22% /

tmpfs 2.0G 686M 1.4G 34% /dev/shm

/dev/sda3 2.0G 216M 1.6G 12% /tmp

/dev/sda5 2.0G 1.5G 421M 79% /usr

/dev/sda6 123G 28G 89G 24% /var

10.0.3.53:/home/sites

17T 11T 5.5T 67% /home/sites

cat /etc/issue

Red Hat Enterprise Linux Server release 6.7 (Santiago)

Kernel \r on an \m

cat /etc/crontab

SHELL=/bin/bash

PATH=/sbin:/bin:/usr/sbin:/usr/bin

MAILTO=root

HOME=/

# For details see man 4 crontabs

# Example of job definition:

# .---------------- minute (0 - 59)

# | .------------- hour (0 - 23)

# | | .---------- day of month (1 - 31)

# | | | .------- month (1 - 12) OR jan,feb,mar,apr ...

# | | | | .---- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat

# | | | | |

# * * * * * user-name command to be executed

ls -la /etc/cron.d

drwxr-xr-x. 2 root root 4096 Dec 2 12:21 .

drwxr-xr-x. 97 root root 12288 Dec 27 07:51 ..

-rw-r--r-- 1 root root 113 Sep 22 12:05 0hourly

-rw-r--r-- 1 root root 363 May 21 2015 aide

-rw-r--r-- 1 root root 52 Dec 2 10:52 apache_child_catcher.cron

-rw-r--r-- 1 root root 42 Dec 2 10:52 auth_db_cache.cron

-rw-r--r-- 1 root root 112 Jan 28 2014 cache_omreport_data

-rw-r--r-- 1 root root 204 Dec 2 10:52 clear-frozen-and-old-emails-from-exim-spool.cron

-rw-r--r-- 1 root root 120 Dec 2 10:52 compress-large-logs.cron

-rw-------. 1 root root 70 Jul 30 2013 dump-and-clear-omreport-hardware-logs.cron

-rw-r--r-- 1 root root 99 Jul 15 2013 find_non_exim_spammers.cron

-rw-r--r-- 1 root root 86 Dec 2 10:52 find_spam_cmq.cron

-rw-r--r-- 1 root root 41 Dec 2 10:52 finddaemon.cron

-rw-r--r-- 1 root root 92 Dec 2 10:52 findmultiprocesses.cron

-rw-r--r-- 1 root root 514 Dec 2 10:52 half_hourly_httpd_config_update_light_and_apache_g raceful.cron

-rw-r--r-- 1 root root 51 Dec 2 10:52 halfmonthly.cron

-rw-r--r-- 1 root root 50 Jan 28 2014 hw_sys_time_sync

-rw-r--r-- 1 root root 77 Dec 2 10:52 ip_limit.cron

-rw-r--r-- 1 root root 61 May 7 2015 nat-pling.cron

-rw-r--r-- 1 root root 128 Sep 19 2014 pickup-ttys.cron

-rw------- 1 root root 134 Jan 28 2014 purge-old-tmp.cron

-rw------- 1 root root 108 May 20 2015 raid-check

-rw------- 1 root root 159 Apr 8 2015 report-spec-db-differences.cron

-rw------- 1 root root 235 Aug 4 2014 sysstat

-rw-r--r-- 1 root root 34 Dec 2 10:52 update-locate-db.cron

-rw-r--r-- 1 root root 43 Dec 2 10:52 update-user-cron.cron

-rw------- 1 root root 78 Apr 10 2014 update_shareddb_motd.cron

ls -la /etc/cron.hourly

drwxr-xr-x. 2 root root 4096 Dec 2 12:21 .

drwxr-xr-x. 97 root root 12288 Dec 27 07:51 ..

lrwxrwxrwx 1 root root 20 Dec 2 12:21 00noomkiller -> /usr/sbin/noomkiller

-rwxr-xr-x 1 root root 409 Sep 22 12:05 0anacron

lrwxrwxrwx 1 root root 35 Dec 2 12:21 0http-config-ssl-update.pl -> /usr/sbin/http-config-ssl-update.pl

lrwxrwxrwx 1 root root 37 Dec 2 12:21 0http-config-update-light.pl -> /usr/sbin/http-config-update-light.pl

lrwxrwxrwx 1 root root 39 Dec 2 12:21 0http-frozzle-config-update.pl -> /usr/sbin/http-frozzle-config-update.pl

lrwxrwxrwx 1 root root 24 Dec 2 12:21 0mysqlps-ext.pl -> /usr/sbin/mysqlps-ext.pl

lrwxrwxrwx 1 root root 31 Dec 2 12:21 1http-config-mv-log.pl -> /usr/sbin/http-config-mv-log.pl

lrwxrwxrwx 1 root root 35 Dec 2 12:21 2cache_omreport_results.sh -> /usr/sbin/cache_omreport_results.sh

lrwxrwxrwx 1 root root 30 Dec 2 12:21 3tmp-inode-cleaner.sh -> /usr/sbin/tmp-inode-cleaner.sh

lrwxrwxrwx 1 root root 34 Dec 2 12:21 delete_temp_ftp_files.pl -> /usr/sbin/delete_temp_ftp_files.pl

-rwxr-xr-x 1 root root 273 Feb 13 2015 mcelog.cron

lrwxrwxrwx 1 root root 40 Dec 2 12:21 update-exim-denied-senders.plx -> /usr/sbin/update-exim-denied-senders.plx

ls -la /etc/cron.monthly

drwxr-xr-x. 2 root root 4096 Jan 28 2014 .

drwxr-xr-x. 97 root root 12288 Dec 27 07:51 ..

-rwxr-xr-x. 1 root root 111 Oct 21 2013 readahead-monthly.cron

ls -la /etc/cron.weekly

drwxr-xr-x. 2 root root 4096 Dec 2 12:21 .

drwxr-xr-x. 97 root root 12288 Dec 27 07:51 ..

lrwxrwxrwx 1 root root 25 Dec 2 12:21 n-log-rotate.rb -> /usr/sbin/n-log-rotate.rb

cat /proc/version

Linux version 2.6.32-504.16.2.el6.x86_64 (mockbuild@x86-028.build.eng.bos.redhat.com) (gcc version 4.4.7 20120313 (Red Hat 4.4.7-9) (GCC) ) #1 SMP Tue Mar 10 17:01:00 EDT 2015

cat /proc/sys/vm/mmap_min_addr

4096

ls -la /usr/bin/staprun

---s--x--- 1 root stapusr 183072 Mar 26 2015 /usr/bin/staprun

find / -type f -perm -u+s -exec ls -la {} \; 2>/dev/null

-rwsr-xr-x 1 root root 36488 Dec 11 2014 /bin/ping6

-rwsr-xr-x 1 root root 34904 Oct 21 14:23 /bin/su

-rwsr-xr-x 1 root root 38200 Dec 11 2014 /bin/ping

-rwsr-xr-x 1 root root 53472 Aug 11 2014 /bin/umount

-rwsr-xr-x 1 root root 77336 Aug 11 2014 /bin/mount

-rwsr-xr-x 1 root root 34840 Aug 4 15:09 /sbin/unix_chkpwd

-rwsr-xr-x 1 root root 10272 Aug 4 15:09 /sbin/pam_timestamp_check

-rwsr-xr-x 1 root root 123648 May 19 2015 /sbin/mount.nfs

-rwsr-xr-x 1 root root 68865 Jul 29 15:19 /opt/dell/srvadmin/sbin/omcliproxy

-rwsr-x--- 1 root dbus 46232 Apr 20 2015 /lib64/dbus-1/dbus-daemon-launch-helper

-rwsr-x--- 1 root support 1332 Apr 7 2014 /usr/bin/ssu

-rwsr-xr-x 1 root root 66352 Mar 27 2015 /usr/bin/chage

-rwsr-xr-x 1 root root 20888 May 26 2014 /usr/bin/rcp

-rwsr-x--- 1 root 503 8042 Apr 4 2014 /usr/bin/rshop-diff

-rws--s--x 1 _rshop apache 7873 Jun 17 2011 /usr/bin/rshop-int

-rwsr-xr-x 1 root root 30768 Nov 2 19:00 /usr/bin/passwd

-rwsr-xr-x 1 root root 22544 Mar 7 2015 /usr/bin/pkexec

-rwsr-xr-x 1 root root 51784 Sep 22 12:05 /usr/bin/crontab

-rwsr-xr-x 1 root root 15640 May 26 2014 /usr/bin/rlogin

-rwsr-x--- 1 root apache 183 Mar 28 2014 /usr/bin/kill-all-php-scripts.plx

-rwsr-xr-x 1 root root 36144 Mar 27 2015 /usr/bin/newgrp

-rws--x--x 1 root root 20056 Aug 11 2014 /usr/bin/chsh

-rws--x--x 1 _status _status 4264 Mar 14 2014 /usr/bin/system_status

-rwsr-xr-x 1 root root 59408 Apr 10 2015 /usr/bin/ksu

-rws--x--x 1 root root 69752 Oct 1 13:58 /usr/bin/sperl5.10.1

-rwsr-xr-x 1 root root 11408 May 26 2014 /usr/bin/rsh

-rws--x--x 1 root root 20184 Aug 11 2014 /usr/bin/chfn

-rwsr-xr-x 1 root root 71480 Mar 27 2015 /usr/bin/gpasswd

-rwsr-xr-x 1 root root 54496 Feb 16 2015 /usr/bin/at

---s--x--x 1 root root 123832 Jul 29 13:08 /usr/bin/sudo

---s--x--- 1 root stapusr 183072 Mar 26 2015 /usr/bin/staprun

-rwsr-x--- 1 root support 1332 Jan 29 2014 /usr/local/bin/ssu

-rws--x--x 1 _status _status 6466 Jan 29 2014 /usr/local/bin/system_status

-rwsr-xr-x 1 root root 257824 Jul 17 10:02 /usr/libexec/openssh/ssh-keysign

-rwsr-xr-x 1 root root 14368 Mar 7 2015 /usr/libexec/polkit-1/polkit-agent-helper-1

-rws--x--x 1 root root 14280 Aug 26 12:24 /usr/libexec/pt_chown

-rwsr-xr-x. 1 root root 893912 Feb 8 2013 /usr/sbin/exim

-rws--x--x. 1 root root 34048 Feb 25 2010 /usr/sbin/userhelper

-r-s--x--- 1 root apache 19992 Nov 11 11:31 /usr/sbin/suexec

-rwsr-xr-x 1 root root 9000 Nov 10 16:34 /usr/sbin/usernetctl
 
Ответить с цитированием

  #608  
Старый 30.12.2015, 01:05
Filipp
Guest
Сообщений: n/a
Провел на форуме:
98300

Репутация: 31
По умолчанию

Есть серв:

Linux 2.6.18-400.1.1.el5PAE #1 SMP Thu Dec 18 01:38:34 EST 2014 i686

Нашел под него сплоит (https://www.exploit-db.com/exploits/18411/), однако запускаю и вижу:

Код:
Code:
[+] Opening parent mem /proc/30870/mem in child.
[+] Sending fd 3 to parent.
===============================
= Mempodipper =
= by zx2c4 =
= Jan 21, 2012 =
===============================

[+] Waiting for transferred fd in parent.
[+] Received fd at 5.
[+] Assigning fd 5 to stderr.
[+] Reading su for exit@plt.
[-] Could not resolve /bin/su. Specify the exit@plt function address manually.
Смотрю я дальше su:

ls -la /bin/su

-rwsr-x--- 1 root wheel 24312 Mar 21 2012 /bin/su

И тут до меня доходит что прав на файл у меня вообще нет. Это смертельно? Может быть можно что-то сделать не задействуя su?
 
Ответить с цитированием

  #609  
Старый 30.12.2015, 12:34
YaBtr
Guest
Сообщений: n/a
Провел на форуме:
132418

Репутация: 652
По умолчанию

Цитата:
Сообщение от Filipp  
Filipp said:

Есть серв:
Linux 2.6.18-400.1.1.el5PAE #1 SMP Thu Dec 18 01:38:34 EST 2014 i686
Нашел под него сплоит (
https://www.exploit-db.com/exploits/18411/
), однако запускаю и вижу:
Указано ведь, что mempodipper для [SIZE="2"]2.6.39
 
Ответить с цитированием

  #610  
Старый 30.12.2015, 12:54
YaBtr
Guest
Сообщений: n/a
Провел на форуме:
132418

Репутация: 652
По умолчанию

Цитата:
Сообщение от Vip77  
Vip77 said:

Есть что под сие?
uname -a
Код:
Code:
Linux ***.com 2.6.32-431.29.2.el6.x86_64 #1 SMP Tue Sep 9 21:36:05 UTC 2014 x86_64 x86_64 x86_64 GNU/Linux
ls -la /boot
Код:
Code:
total 43336
dr-xr-xr-x.  4 root root  4096 Oct 14  2014 .
dr-xr-xr-x. 22 root root  4096 Oct  8 03:44 ..
-rw-r--r--.  1 root root  171 Sep  9  2014 .vmlinuz-2.6.32-431.29.2.el6.x86_64.hmac
-rw-r--r--.  1 root root  166 Nov 21  2013 .vmlinuz-2.6.32-431.el6.x86_64.hmac
-rw-r--r--.  1 root root  2519815 Sep  9  2014 System.map-2.6.32-431.29.2.el6.x86_64
-rw-r--r--.  1 root root  2518236 Nov 21  2013 System.map-2.6.32-431.el6.x86_64
-rw-r--r--.  1 root root  105200 Sep  9  2014 config-2.6.32-431.29.2.el6.x86_64
-rw-r--r--.  1 root root  105195 Nov 21  2013 config-2.6.32-431.el6.x86_64
drwxr-xr-x.  3 root root  4096 Oct 13  2014 efi
drwxr-xr-x.  2 root root  4096 Oct 14  2014 grub
-rw-------.  1 root root 15220904 Oct 14  2014 initramfs-2.6.32-431.29.2.el6.x86_64.img
-rw-------.  1 root root 15216205 Oct 13  2014 initramfs-2.6.32-431.el6.x86_64.img
-rw-r--r--.  1 root root  193945 Sep  9  2014 symvers-2.6.32-431.29.2.el6.x86_64.gz
-rw-r--r--.  1 root root  193758 Nov 21  2013 symvers-2.6.32-431.el6.x86_64.gz
-rwxr-xr-x.  1 root root  4131984 Sep  9  2014 vmlinuz-2.6.32-431.29.2.el6.x86_64
-rwxr-xr-x.  1 root root  4128368 Nov 21  2013 vmlinuz-2.6.32-431.el6.x86_64
ls -la --full-time /lib
Код:
Code:
total 32
dr-xr-xr-x.  8 root root 4096 2014-10-15 04:08:41.135969938 -0400 .
dr-xr-xr-x. 22 root root 4096 2015-10-08 03:44:57.976293544 -0400 ..
lrwxrwxrwx  1 root root  14 2014-10-15 04:08:41.135969938 -0400 cpp -> ../usr/bin/cpp
drwxr-xr-x. 42 root root 4096 2014-10-14 12:23:53.729344301 -0400 firmware
drwxr-xr-x.  6 root root 4096 2014-10-13 09:33:41.365999951 -0400 kbd
dr-xr-xr-x.  4 root root 4096 2014-10-14 12:24:20.285344296 -0400 modules
drwxr-xr-x.  2 root root 4096 2013-11-22 09:06:19.000000000 -0500 security
drwxr-xr-x.  6 root root 4096 2014-10-13 09:31:54.435999970 -0400 terminfo
drwxr-xr-x.  5 root root 4096 2014-10-14 12:24:19.398344296 -0400 udev


mount

Код:
Code:
/dev/sda1 on / type ext4 (rw)
proc on /proc type proc (rw)
sysfs on /sys type sysfs (rw)
devpts on /dev/pts type devpts (rw,gid=5,mode=620)
tmpfs on /dev/shm type tmpfs (rw)
/dev/sda8 on /home type ext4 (rw)
/dev/sda5 on /tmp type ext4 (rw)
/dev/sda6 on /usr type ext4 (rw)
/dev/sda7 on /usr/local type ext4 (rw)
/dev/sda3 on /var type ext4 (rw)
none on /proc/sys/fs/binfmt_misc type binfmt_misc (rw)
tmpfs on /mnt/ram type tmpfs (rw,size=20m)


df -h

Код:
Code:
Filesystem  Size  Used Avail Use% Mounted on
/dev/sda1  16G  828M  15G  6% /
tmpfs  7.8G  0  7.8G  0% /dev/shm
/dev/sda8  412G  25G  367G  7% /home
/dev/sda5  16G  232M  15G  2% /tmp
/dev/sda6  16G  817M  15G  6% /usr
/dev/sda7  16G  7.6G  7.4G  51% /usr/local
/dev/sda3  60G  4.6G  52G  9% /var
tmpfs  20M  7.3M  13M  37% /mnt/ram
cat /etc/issue
Код:
Code:
CentOS release 6.5 (Final)
Kernel \r on an \m


cat /etc/crontab

Код:
Code:
SHELL=/bin/bash
PATH=/sbin:/bin:/usr/sbin:/usr/bin
MAILTO=root
HOME=/

# For details see man 4 crontabs

# Example of job definition:
# .---------------- minute (0 - 59)
# |  .------------- hour (0 - 23)
# |  |  .---------- day of month (1 - 31)
# |  |  |  .------- month (1 - 12) OR jan,feb,mar,apr ...
# |  |  |  |  .---- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
# |  |  |  |  |
# *  *  *  *  * user-name command to be executed
ls -la /etc/cron.d
Код:
Code:
total 20
drwxr-xr-x.  2 root root 4096 Oct 15  2014 .
drwxr-xr-x. 71 root root 4096 Oct  8 04:27 ..
-rw-r--r--.  1 root root  113 Nov 23  2013 0hourly
-rw-r--r--.  1 root root  108 Apr  7  2014 raid-check
-rw-r--r--  1 root root  235 Aug 29  2014 sysstat
cat /etc/cron.d/0hourly
Код:
Code:
SHELL=/bin/bash
PATH=/sbin:/bin:/usr/sbin:/usr/bin
MAILTO=root
HOME=/
01 * * * * root run-parts /etc/cron.hourly
cat /etc/cron.d/raid-check
Код:
Code:
# Run system wide raid-check once a week on Sunday at 1am by default
0 1 * * Sun root /usr/sbin/raid-check
cat /etc/cron.d/sysstat
Код:
Code:
# Run system activity accounting tool every 10 minutes
*/10 * * * * root /usr/lib64/sa/sa1 1 1
# 0 * * * * root /usr/lib64/sa/sa1 600 6 &
# Generate a daily summary of process accounting at 23:53
53 23 * * * root /usr/lib64/sa/sa2 -A
cat /proc/version
Код:
Code:
Linux version 2.6.32-431.29.2.el6.x86_64 (mockbuild@c6b9.bsys.dev.centos.org) (gcc version 4.4.7 20120313 (Red Hat 4.4.7-4) (GCC) ) #1 SMP Tue Sep 9 21:36:05 UTC 2014
cat /proc/sys/vm/mmap_min_addr
Код:
Code:
4096


ls -la /etc/cron.hourly

Код:
Code:
total 12
drwxr-xr-x.  2 root root 4096 Sep 26  2011 .
drwxr-xr-x. 71 root root 4096 Oct  8 04:27 ..
-rwxr-xr-x.  1 root root  409 Nov 23  2013 0anacron
cat /etc/cron.hourly/0anacron
Код:
Code:
#!/bin/bash
# Skip excecution unless the date has changed from the previous run
if test -r /var/spool/anacron/cron.daily; then
  day=`cat /var/spool/anacron/cron.daily`
fi
if [ `date +%Y%m%d` = "$day" ]; then
  exit 0;
fi

# Skip excecution unless AC powered
if test -x /usr/bin/on_ac_power; then
  /usr/bin/on_ac_power &> /dev/null
  if test $? -eq 1; then
  exit 0
  fi
fi
/usr/sbin/anacron -s
find / -type f -perm -u+s -exec ls -la {} \; 2>/dev/null
Код:
Code:
-rwsr-xr-x. 1 root root 10272 Nov 22  2013 /sbin/pam_timestamp_check
-rwsr-xr-x. 1 root root 34840 Nov 22  2013 /sbin/unix_chkpwd
-rwsr-xr-x. 1 root root 77336 Apr 28  2014 /bin/mount
-rwsr-xr-x. 1 root root 40760 Sep 26  2013 /bin/ping
-rwsr-x---. 1 root fuse 27968 Dec  7  2011 /bin/fusermount
-rwsr-xr-x. 1 root root 36488 Sep 26  2013 /bin/ping6
-rwsr-xr-x. 1 root root 53472 Apr 28  2014 /bin/umount
-rwsr-xr-x. 1 root root 34904 Jun 25  2014 /bin/su
-rwsr-x--- 1 root dbus 46232 Sep 13  2012 /lib64/dbus-1/dbus-daemon-launch-helper
-rwsr-xr-x. 1 root root 9000 Sep  3  2014 /usr/sbin/usernetctl
---s--x--x. 1 root root 123832 Nov 22  2013 /usr/bin/sudo
-rwsr-xr-x. 1 root root 71480 Dec  7  2011 /usr/bin/gpasswd
-rwsr-xr-x. 1 root root 51784 Nov 23  2013 /usr/bin/crontab
-rwsr-xr-x. 1 root root 30768 Feb 22  2012 /usr/bin/passwd
-rwsr-xr-x 1 root root 18072 Sep 19  2013 /usr/bin/pkexec
-rws--x--x. 1 root root 20056 Apr 28  2014 /usr/bin/chsh
-rwsr-xr-x. 1 root root 66352 Dec  7  2011 /usr/bin/chage
-rwsr-xr-x. 1 root root 36144 Dec  7  2011 /usr/bin/newgrp
-rws--x--x. 1 root root 20184 Apr 28  2014 /usr/bin/chfn
-rws--x--x. 1 root root 14280 Aug 29  2014 /usr/libexec/pt_chown
-rwsr-xr-x. 1 root root 237376 Nov 22  2013 /usr/libexec/openssh/ssh-keysign
-rwsr-xr-x 1 root root 11080 Sep 19  2013 /usr/libexec/polkit-1/polkit-agent-helper-1
Что с CVE-2015-3202 ?
 
Ответить с цитированием
Ответ





Здесь присутствуют: 1 (пользователей: 0 , гостей: 1)
 


Быстрый переход




ANTICHAT.XYZ