CVE-2021-4034
SUDO_KILLER
CVE-2021-4034 | SUDO_KILLER | |
---|---|---|
3 | 8 | |
1,021 | 2,096 | |
- | - | |
0.0 | 8.8 | |
almost 1 year ago | about 2 months ago | |
C | Shell | |
- | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
CVE-2021-4034
-
How to configure polkit utility in centos 7 cve-2019-4034? please help.
Yeah sure, I'm creating a vulnerable machine using pkexec utility which is vulnerable by this payload but I didn't downgrade the current version and didn't find any old package.
- pkexec (CVE-2021-4034) - local privilege escalation on all versions on Linux
-
Linux Local Priv ESC: CVE-2021-4034
POC: https://github.com/arthepsy/CVE-2021-4034
SUDO_KILLER
- cve-2023-22809
-
CVE-2023-22809
this project https://github.com/TH3xACE/SUDO_KILLER can be used to detect and exploit this CVE.
-
Sudoedit can edit arbitrary files (CVE-2023-22809)
check the project https://github.com/TH3xACE/SUDO_KILLER ... there is a docker and the tool within it to play with the described scenario and there is a video also...showing the exploitation :)
- TH3xACE/SUDO_KILLER - A tool to identify and exploit sudo rules' misconfigurations and vulnerabilities within sudo for linux privilege escalation.
- Some of the latest CVEs like CVE-2014-0106, CVE-2015-5602, CVE-2017-1000367, CVE-2019-14287, CVE-2019-18634, CVE-2021-3156 and CVE-2021-23240 are detected by the tool and much more. If you like the project, don't forget to give a +1 star on github. Thanks
- How to detect sudo’s CVE-2021-3156 using Falco
-
Baron Samedit: Heap-based buffer overflow in Sudo (CVE-2021-3156)
Detection and checks for CVE-2021-3156 and CVE-2021-23240 were added to https://github.com/TH3xACE/SUDO_KILLER . Please give a +1 star on github if you appreciate the project.
What are some alternatives?
CVE-2021-4034 - CVE-2021-4034: Local Privilege Escalation in polkit's pkexec proof of concept
OSCP-Exam-Report-Template - Modified template for the OSCP Exam and Labs. Used during my passing attempt
cve - Gather and update all available and newest CVEs with their PoC.
linux-smart-enumeration - Linux enumeration tool for pentesting and CTFs with verbosity levels
CVE-2020-0796 - CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost
EZEA - EZEA (EaZy Enum Automator), made for OSCP. This tool uses bash to automate most of the enumeration proces
PocOrExp_in_Github - 聚合Github上已有的Poc或者Exp,CVE信息来自CVE官网。Auto Collect Poc Or Exp from Github by CVE ID.
linux-exploit-suggester - Linux privilege escalation auditing tool
PwnKit - Self-contained exploit for CVE-2021-4034 - Pkexec Local Privilege Escalation
CTF-Difficulty - This cheasheet is aimed at the CTF Players and Beginners to help them sort the CTF Challenges on the basis of Difficulties.
blankspace - Proof of Concept for EFSRPC Arbitrary File Upload (CVE-2021-43893)
OSCP-BoF - This is a walkthrough about understanding the #BoF machine present in the #OSCP exam.