From 41bd75145ce4bc10b6753720b58b2688e5f0a544 Mon Sep 17 00:00:00 2001 From: Andrea Cardaci Date: Fri, 24 Aug 2018 12:25:57 +0200 Subject: [PATCH] Fix SUID for less and pg Only file access is possible in that case. --- _gtfobins/less.md | 4 ++-- _gtfobins/pg.md | 7 ++++--- 2 files changed, 6 insertions(+), 5 deletions(-) diff --git a/_gtfobins/less.md b/_gtfobins/less.md index d895060..4ee0e8c 100644 --- a/_gtfobins/less.md +++ b/_gtfobins/less.md @@ -13,8 +13,8 @@ functions: - code: | sudo less /etc/profile !/bin/sh - suid-limited: + suid-enabled: - code: | - ./less /etc/profile + ./less file_to_read !/bin/sh --- diff --git a/_gtfobins/pg.md b/_gtfobins/pg.md index 54d5ee0..8816430 100644 --- a/_gtfobins/pg.md +++ b/_gtfobins/pg.md @@ -10,8 +10,9 @@ functions: - code: | sudo pg /etc/profile !/bin/sh - suid-limited: - - code: | - ./pg /etc/profile + suid-enabled: + - description: + code: | + ./pg file_to_read !/bin/sh ---