·#!/usr/bin/perl# FileName: x_getlvcb_aix432_limited.pl# Exploit getlvcb of Aix4.3.2 to get a uid=0 shell from gid=system.# Tested : on Aix4.3.2. # Author : watercloud@xfocus.org#
·#!/usr/bin/perl# FileName: x_putlvcb_aix432_limited.pl# Exploit putlvcb of Aix4.3.2 to get a uid=0 shell from gid=system.# Tested : on Aix4.3.2.# Author : watercloud@xfocus.org#
·#!/usr/bin/perl# FileName: x_make_aix433_limited.pl# Exploit /usr/local/bin/make of Aix4.3.3 to get a gid=0 shell.# Tested on low version of Aix4.3.3.# Author : water
·* This tool scans remote hosts with httpd (apache) and disclosure information* about existens users accounts via wrong default configuration of mod_userdir* (default apache module). Then attempts to l
·HP-UX本地语言系统格式化串漏洞针对/usr/bin/ct的利用程序,本地用户可以通过它取得root特权。Tested on HP-UX B11.11。/******************************************************************************** Name :
·IE Remote Compromise by Getting Cache Location[tested]OS:WinXp, CN versionMicrosoft Internet Explorer v6.Sp1;ms03-048 up-to-date on 2003/11/16[overview]With the help of LocalZoneInCache(refer to [tech
·EPIC4 remote exploit that acts as an IRC server and makes use of a stack-based overflow in EPIC4 versions later than pre2.003. Upon success, this exploit yields a shell with the privileges of the user
·any process that implements a message queue is vulnerable to been shutdown by a user of any security level. In some instances by passing shutdown password requirements.Dav1d Security Homehttp://www.da