2 Star 2 Fork 1

Mstir/Penetration_Testing_POC

Create your Gitee Account
Explore and code with more than 13.5 million developers,Free private repositories !:)
Sign up
文件
Clone or Download
contribute
Sync branch
Cancel
Notice: Creating folder will generate an empty file .keep, because not support in Git
Loading...
README

CARPE (DIEM): CVE-2019-0211 Apache Root Privilege Escalation

This is a local root exploit for Apache HTTPd. Details here. This is a POC. It might fail for a dozen of reasons. PR welcome.

Targets

The exploit has been tested and works on:

Ubuntu 18.04.2 LTS

PHP : 7.1.27-1 / 7.2.15-0 / 7.3.3-1
Apache : Apache/2.4.29 (Ubuntu), build 2018-03-02T02:19:31

Ubuntu 16.04.6 LTS

PHP : 7.1.27-1 / 7.2.16-1 / 7.3.3-1
Apache : Apache/2.4.18 (Ubuntu), build 2016-04-15T18:00:57

Debian GNU/Linux 9.8 (stretch)

PHP : 7.1.27-1 / 7.2.16-1 / 7.3.3-1
Apache : Apache/2.4.25 (Debian), build 2018-11-03T18:46:19 (latest version when debian-security repo is disabled)

From:https://github.com/cfreal/exploits/tree/master/CVE-2019-0211-apache

马建仓 AI 助手
尝试更多
代码解读
代码找茬
代码优化
1
https://gitee.com/mstir/Penetration_Testing_POC.git
git@gitee.com:mstir/Penetration_Testing_POC.git
mstir
Penetration_Testing_POC
Penetration_Testing_POC
master

Search